
CVE-2019-12762
https://notcve.org/view.php?id=CVE-2019-12762
06 Jun 2019 — Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anomalies via a radio signal between 198 kHz and 203 kHz, as demonstrated by a transmitter and antenna hidden just beneath the surface of a coffee-shop table, aka Ghost Touch. Los dispositivos Xiaomi Mi 5s Plus permiten a los atacantes desencadenar anomalías de la pantalla táctil a través de una señal de radio entre 198 kHz y 203 kHz, como lo demuestra un transmisor y una antena ocultos justo debajo de la superficie de una mesa de cafetería, t... • https://hackercombat.com/nfc-vulnerability-may-promote-ghost-screen-taps •

CVE-2018-14745
https://notcve.org/view.php?id=CVE-2018-14745
15 Mar 2019 — Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to overwrite kernel memory due to improper validation of the ring buffer read pointer. The Samsung ID is SVE-2018-12029. Desbordamiento de búfer en prot_get_ring_space en el controlador Wi-Fi bcmdhd4358 en Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 permite que un atacante (que ha obtenido la ejecución de código en el chip W... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14745.md • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-14852
https://notcve.org/view.php?id=CVE-2018-14852
17 Dec 2018 — Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause invalid accesses to operating system memory due to improper validation of the network interface index provided by the Wi-Fi chip's firmware. Acceso al array fuera de límites en dhd_rx_frame en drivers/net/wireless/bcmdhd4358/dhd_linux.c en el controlador Wi-Fi bc... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14852.md • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-14853
https://notcve.org/view.php?id=CVE-2018-14853
17 Dec 2018 — A NULL pointer dereference in dhd_prot_txdata_write_flush in drivers/net/wireless/bcmdhd4358/dhd_msgbuf.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device to reboot. The Samsung ID is SVE-2018-11783. Una desreferencia de puntero NULL en dhd_prot_txdata_write_flush en drivers/net/wireless/bcmdhd4358/dhd_msgbuf.c en el controlador Wi-Fi bcmdhd4358 en Samsung Galaxy S6 SM-G920F G920FXXU5EQH7... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14853.md • CWE-476: NULL Pointer Dereference •

CVE-2018-14854
https://notcve.org/view.php?id=CVE-2018-14854
17 Dec 2018 — Buffer overflow in dhd_bus_flow_ring_delete_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allow an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785. Un desbordamiento de búfer en dhd_bus_flow_ring_delete_response en drivers/net/wireless/bcmdhd4358/dhd_pcie.c en el controlador Wi-Fi bcmdhd4358 en Samsung Galaxy S6 S... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14854_CVE-2018-14855_CVE-2018-14856.md • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-14855
https://notcve.org/view.php?id=CVE-2018-14855
17 Dec 2018 — Buffer overflow in dhd_bus_flow_ring_flush_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 allow an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785. Un desbordamiento de búfer en dhd_bus_flow_ring_flush_response en drivers/net/wireless/bcmdhd4358/dhd_pcie.c en el controlador Wi-Fi bcmdhd4358 en Samsung Galaxy S6 permite que un atacante (q... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14854_CVE-2018-14855_CVE-2018-14856.md • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-14856
https://notcve.org/view.php?id=CVE-2018-14856
17 Dec 2018 — Buffer overflow in dhd_bus_flow_ring_create_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allow an attacker (who has obtained code execution on the Wi-Fi) chip to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785. Un desbordamiento de búfer en dhd_bus_flow_ring_create_response en drivers/net/wireless/bcmdhd4358/dhd_pcie.c en el controlador Wi-Fi bcmdhd4358 en Samsung Galaxy S6 S... • https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14854_CVE-2018-14855_CVE-2018-14856.md • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-2036
https://notcve.org/view.php?id=CVE-2016-2036
13 Apr 2017 — The getURL function in drivers/secfilter/urlparser.c in secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to trigger a NULL pointer dereference via a "GET HTTP/1.1" request, aka SVE-2016-5036. La función getURL en drivers/secfilter/urlparser.c en secfilter en el kernel de Samsung para Android en SM-N9005 build N9005XXUGBOB6 (Note 3) y dispositivos G920FXXU2COH2 (Galaxy S6) de generación de SM-G920F permi... • https://github.com/ud2/advisories/tree/master/android/samsung/nocve-2016-0001 • CWE-476: NULL Pointer Dereference •

CVE-2016-2565
https://notcve.org/view.php?id=CVE-2016-2565
13 Apr 2017 — Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to read sent e-mail messages, aka SVE-2015-5081. Samsung SecEmailSync en SM-G920F build dispositivos G920FXXU2COH2 (Galaxy S6) permite a los atacantes leer mensajes de correo electrónico enviado, también conocido como SVE-2015-5081. • http://www.securityfocus.com/bid/97658 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-2566
https://notcve.org/view.php?id=CVE-2016-2566
13 Apr 2017 — Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-2015-5081. Samsung SecEmailSync en dispositivos SM-G920F build G920FXXU2COH2 (Galaxy S6) dispositivos tiene inyección de SQL, también conocido como SVE-2015-5081. • http://www.securityfocus.com/bid/97654 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •