Samsung SwiftKey Vulnerability (CVE-2015-4640)
Publish Date: 04 de sierpnia de 2015
Severity: : Low
CVE Kennungen: : CVE-2015-4640
Advisory Date: 19 de czerwca de 2015
DESCRIPTION
The Samsung Swiftkey vulnerability could allow execution of malicious code on the affected Samsung devices via man-in-the-middle attacks. These man-in-the-middle attacks occur when a remote attacker changes the downloaded files by the keyboard. As such, remote code is executed and consequently, the attacker has control of the affected devices.
Note that the vulnerability designated with CVE-2015-4640 can be exploited together with the vulnerability covered in CVE-2015-4641 for man-in-the-middle code execution.