Unrated severityNVD Advisory· Published Jan 22, 2020· Updated Aug 5, 2024
CVE-2018-16262
CVE-2018-16262
Description
The pkgmgr system service in Tizen allows an unprivileged process to perform package management actions, due to improper D-Bus security policy configurations. Such actions include installing, decrypting, and killing other packages. This affects Tizen before 5.0 M1, and Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.
Affected products
2- Tizen/Tizendescription
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- media.defcon.org/DEF%20CON%2026/DEF%20CON%2026%20presentations/Dongsung%20Kim%20and%20Hyoung%20Kee%20Choi%20-%20Updated/DEFCON-26-Dongsung-Kim-and-Hyoung-Kee-Choi-Your-Watch-Can-Watch-You-Updated.pdfmitrex_refsource_MISC
- review.tizen.org/git/mitrex_refsource_MISC
- www.youtube.com/watchmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.