Samsung · Tizen Fota Service · CVE-2021-25436
Name of the Vulnerable Software and Affected Versions:
Tizen FOTA service versions prior to Firmware update JUL-2021 Release
Description:
The issue is related to improper input validation in the Tizen FOTA service, which allows for arbitrary code execution via the Samsung Accessory Protocol.
Recommendations:
For versions prior to Firmware update JUL-2021 Release, update to the JUL-2021 Release or later to resolve the issue.