Samsung SwiftKey Vulnerability (CVE-2015-4640)
Publish Date: 04 août 2015
Gravité: : Faible
Identifiant(s) CVE: : CVE-2015-4640
Date du conseil: 19 juin 2015
Description
The Samsung Swiftkey vulnerability could allow execution of malicious code on the affected Samsung devices via man-in-the-middle attacks. These man-in-the-middle attacks occur when a remote attacker changes the downloaded files by the keyboard. As such, remote code is executed and consequently, the attacker has control of the affected devices.
Note that the vulnerability designated with CVE-2015-4640 can be exploited together with the vulnerability covered in CVE-2015-4641 for man-in-the-middle code execution.