Integer Overflow Vulnerability in libomacp.so on Samsung Galaxy S4-S7 Devices

Integer Overflow Vulnerability in libomacp.so on Samsung Galaxy S4-S7 Devices

CVE-2016-7990 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can result in Denial of Service and potentially remote code execution, a subset of SVE-2016-6542.

Learn more about our Web Application Penetration Testing UK.