Samsung SwiftKey Vulnerability (CVE-2015-4640)
2015年8月4日
风险等级: 低
CVE标识符: : CVE-2015-4640
建议日期 : 2015年6月19日
描述
The Samsung Swiftkey vulnerability could allow execution of malicious code on the affected Samsung devices via man-in-the-middle attacks. These man-in-the-middle attacks occur when a remote attacker changes the downloaded files by the keyboard. As such, remote code is executed and consequently, the attacker has control of the affected devices.
Note that the vulnerability designated with CVE-2015-4640 can be exploited together with the vulnerability covered in CVE-2015-4641 for man-in-the-middle code execution.