Samsung Note devices with KK(4.4), L(5.0/5.1), and M(6.0) software allow attackers to crash the system by creating an arbitrarily large number of active VR service threads. The Samsung ID is SVE-2016-7650.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
http://security.samsungmobile.com/smrupdate.html#SMR-JAN-2017 | vendor advisory |
http://www.securityfocus.com/bid/95418 | vdb entry third party advisory |