Vulnerability Description
An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos and MediaTek chipsets) software. Unauthenticated attackers can execute LTE/5G commands by sending a debugging command over USB. The Samsung ID is SVE-2020-16979 (September 2020).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | 10.0 |
References
- https://security.samsungmobile.com/securityUpdate.smsbVendor Advisory
- https://security.samsungmobile.com/securityUpdate.smsbVendor Advisory
FAQ
What is CVE-2020-25280?
CVE-2020-25280 is a vulnerability with a CVSS score of 6.8 (MEDIUM). An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos and MediaTek chipsets) software. Unauthenticated attackers can execute LTE/5G commands by sending a debugging command over USB. T...
How severe is CVE-2020-25280?
CVE-2020-25280 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-25280?
Check the references section above for vendor advisories and patch information. Affected products include: Google Android.