Intent redirection in Samsung Experience Service versions 10.8.0.4 in Android P(9.0) below, and 12.2.0.5 in Android Q(10.0) above allows attacker to execute privileged action.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/ | Vendor Advisory |
https://security.samsungmobile.com/serviceWeb.smsb | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Samsung Mobile
Published: 2021-04-09T17:39:23
Updated: 2021-04-09T17:39:23
Reserved: 2021-01-19T00:00:00
Link: CVE-2021-25377
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-04-09T18:15:15.320
Modified: 2021-04-21T18:25:47.323
Link: CVE-2021-25377
JSON object: View
Redhat Information
No data.