SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
BID:57131
Info
SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
| Bugtraq ID: | 57131 |
| Class: | Design Error |
| CVE: |
CVE-2012-6337 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 31 2012 12:00AM |
| Updated: | Dec 31 2012 12:00AM |
| Credit: | Jiten Jain |
| Vulnerable: |
Samsung SamsungDive 0 Samsung Galaxy S II 0 Samsung Galaxy S 0 Samsung Galaxy Note II 0 |
| Not Vulnerable: | |
Discussion
SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
SamsungDive for Android is prone to a spoofing vulnerability.
Successful exploits may allow an attacker to defeat the device tracking by tampering this feature or its location data.
SamsungDive for Android is prone to a spoofing vulnerability.
Successful exploits may allow an attacker to defeat the device tracking by tampering this feature or its location data.
Exploit / POC
SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
Attackers can exploit this issue through readily available tools.
Attackers can exploit this issue through readily available tools.
Solution / Fix
SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
References
SamsungDive for Android CVE-2012-6337 Spoofing Vulnerability
References:
References:
- GPS based tracking service provided by Samsung vulnerable to thieves (The Hacker News)
- Samsung Homepage (Samsung)