PT-2022-15313 · Samsung · Knox Guard
Published
2022-01-07
·
Updated
2022-01-14
·
CVE-2022-22268
CVSS v3.1
6.1
Medium
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Knox Guard versions prior to SMR Jan-2022 Release 1
Description
The issue is related to the incorrect implementation of Knox Guard, which allows physically proximate attackers to temporarily unlock the Knox Guard via Samsung DeX mode.
Recommendations
For versions prior to SMR Jan-2022 Release 1, update to SMR Jan-2022 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting the use of Samsung DeX mode to minimize the risk of exploitation.
Fix
Improper Authorization
Files Accessible to External Parties
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Knox Guard