PT-2021-16623 · Samsung+1 · Samsung Members+1

Antonio Arlia Ciombo

·

Published

2021-07-08

·

Updated

2021-07-12

·

CVE-2021-25432

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Samsung Members versions prior to 2.4.85.11 in Android O(8.1) and below Samsung Members versions prior to 3.9.10.11 in Android P(9.0) and above
Description: The issue allows untrusted applications to access chat data, potentially exposing sensitive information.
Recommendations: For Samsung Members versions prior to 2.4.85.11 in Android O(8.1) and below, update to version 2.4.85.11 or later. For Samsung Members versions prior to 3.9.10.11 in Android P(9.0) and above, update to version 3.9.10.11 or later.

Fix

Information Disclosure

Exposure of Resource to Wrong Sphere

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-25432

Affected Products

Android
Samsung Members