Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.40.5 allows local attackers to access privileged content providers as Galaxy Store permission.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=4 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Samsung Mobile
Published: 2022-04-11T19:37:36
Updated: 2022-04-11T19:37:36
Reserved: 2022-04-04T00:00:00
Link: CVE-2022-28542
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-11T20:15:23.533
Modified: 2022-04-21T01:39:32.173
Link: CVE-2022-28542
JSON object: View
Redhat Information
No data.