Security Advisory

CVE-2016-7990

9.8
CRITICAL

Vulnerability Description

On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can result in Denial of Service and potentially remote code execution, a subset of SVE-2016-6542.
Published Date October 31, 2016
Official Source NIST NVD Advisory