Samsung · Bixby Routines · CVE-2022-22286
**Name of the Vulnerable Software and Affected Versions**
Bixby Routines versions prior to 3.1.21.8
**Description**
A vulnerability in Bixby Routines allows attackers to execute privileged actions by hijacking and modifying the intent using PendingIntent. This issue affects devices running Android R (11.0) and Android Q (10.0).
**Recommendations**
For versions prior to 3.1.21.8, update to version 3.1.21.8 or later to resolve the issue. As a temporary workaround, consider restricting the use of PendingIntent in Bixby Routines to minimize the risk of exploitation.