Vulnerability Description
Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involving a third-party screen protector.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samsung | Galaxy S10 Firmware | - |
| Samsung | Galaxy S10 | - |
| Samsung | Note 10 Firmware | - |
| Samsung | Note 10 | - |
References
- https://news.ycombinator.com/item?id=21280205Issue TrackingThird Party Advisory
- https://www.engadget.com/2019/10/17/samsung-patch-fingerprint-reader/Press/Media CoverageThird Party Advisory
- https://www.forbes.com/sites/gordonkelly/2019/10/15/samsung-galaxy-s10-note10-plPress/Media CoverageThird Party Advisory
- https://news.ycombinator.com/item?id=21280205Issue TrackingThird Party Advisory
- https://www.engadget.com/2019/10/17/samsung-patch-fingerprint-reader/Press/Media CoverageThird Party Advisory
- https://www.forbes.com/sites/gordonkelly/2019/10/15/samsung-galaxy-s10-note10-plPress/Media CoverageThird Party Advisory
FAQ
What is CVE-2019-17668?
CVE-2019-17668 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involving a third-party screen protector.
How severe is CVE-2019-17668?
CVE-2019-17668 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-17668?
Check the references section above for vendor advisories and patch information. Affected products include: Samsung Galaxy S10 Firmware, Samsung Galaxy S10, Samsung Note 10 Firmware, Samsung Note 10.