CVE-2019-12087

Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent application. For example, the victim becomes stuck in a launcher with their Secure Folder locked. NOTE: the researcher mentions "the Samsung Security Team considered this issue as no/little security impact.
References
Link Resource
https://github.com/fs0c131y/SamsungLocker Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:s9\+_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:s9\+:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:s10_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:s10:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:samsung:xcover_4_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:xcover_4:-:*:*:*:*:*:*:*

History

07 Nov 2023, 03:03

Type Values Removed Values Added
Summary ** DISPUTED ** Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent application. For example, the victim becomes stuck in a launcher with their Secure Folder locked. NOTE: the researcher mentions "the Samsung Security Team considered this issue as no/little security impact." Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent application. For example, the victim becomes stuck in a launcher with their Secure Folder locked. NOTE: the researcher mentions "the Samsung Security Team considered this issue as no/little security impact.

Information

Published : 2019-05-14 03:29

Updated : 2024-04-11 01:03


NVD link : CVE-2019-12087

Mitre link : CVE-2019-12087

CVE.ORG link : CVE-2019-12087


JSON object : View

Products Affected

samsung

  • s10
  • xcover_4
  • s9\+_firmware
  • xcover_4_firmware
  • s9\+
  • s10_firmware
CWE
CWE-399

Resource Management Errors