CVE-2018-5210: Samsung Mobile

High severity, CVSS 8.1. EPSS: 1.8% chance of exploitation in the next 30 days.

On Samsung mobile devices with N(7.x) software and Exynos chipsets, attackers can conduct a Trustlet stack overflow attack for arbitrary TEE code execution, in conjunction with a brute-force attack to discover unlock information (PIN, password, or pattern). The Samsung ID is SVE-2017-10733.

Affected products

  • Samsung Samsung Mobile: version 7.0 only; version 7.1 only; version 7.1.1 only; version 7.1.2 only

Published 2018-01-04. Last modified 2026-06-17.