CVE-2018-5210: Samsung Mobile
High severity, CVSS 8.1. EPSS: 1.8% chance of exploitation in the next 30 days.
On Samsung mobile devices with N(7.x) software and Exynos chipsets, attackers can conduct a Trustlet stack overflow attack for arbitrary TEE code execution, in conjunction with a brute-force attack to discover unlock information (PIN, password, or pattern). The Samsung ID is SVE-2017-10733.
Affected products
- Samsung Samsung Mobile: version 7.0 only; version 7.1 only; version 7.1.1 only; version 7.1.2 only
Published 2018-01-04. Last modified 2026-06-17.