Vulnerability record · CVE-2018-14745 · published 21 March 2019
CVE-2018-14745: Samsung galaxy s6 firmware memory buffer overflow vulnerability
Samsung · Galaxy S6 Firmware
Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to overwrite kernel memory due to improper validation of the ring buffer read pointer. The Samsung ID is SVE-2018-12029.
Description
Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to overwrite kernel memory due to improper validation of the ring buffer read pointer. The Samsung ID is SVE-2018-12029.
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14745.md | ExploitThird Party Advisory |
| https://pastebin.com/tmFrECnZ | ExploitThird Party Advisory |
| https://security.samsungmobile.com/securityUpdate.smsb | Vendor Advisory |
| https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14745.md | ExploitThird Party Advisory |
| https://pastebin.com/tmFrECnZ | ExploitThird Party Advisory |
| https://security.samsungmobile.com/securityUpdate.smsb | Vendor Advisory |
Track CVE-2018-14745 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2018-14745), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.