#VU34491 Input validation error in Google Android - CVE-2018-21063
Published: April 8, 2020 / Updated: August 8, 2020
Google Android
Description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) (Exynos chipsets) software. Keymaster has an architectural problem because tlApi in TEE is not properly protected. The Samsung ID is SVE-2018-11792 (August 2018).