CVE-2018-16267

The system-popup system service in Tizen allows an unprivileged process to perform popup-related system actions, due to improper D-Bus security policy configurations. Such actions include the triggering system poweroff menu, and prompting a popup with arbitrary strings. This affects Tizen before 5.0 M1, and Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.
Configurations

Configuration 1


Information

Published : 2020-01-22 01:15

Updated : 2020-02-03 05:25


NVD link : CVE-2018-16267

Mitre link : CVE-2018-16267

Products Affected
CWE