CVE-2020-10836

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The Widevine Trustlet allows read and write operations on arbitrary memory locations. The Samsung ID is SVE-2019-15873 (February 2020).
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-03-24 18:15

Updated : 2024-02-04 21:00


NVD link : CVE-2020-10836

Mitre link : CVE-2020-10836

CVE.ORG link : CVE-2020-10836


JSON object : View

Products Affected

google

  • android
CWE
CWE-125

Out-of-bounds Read

CWE-787

Out-of-bounds Write