PT-2022-15985 · Samsung · Dex Home+1
H0Rd7
·
Published
2022-02-11
·
Updated
2022-02-18
·
CVE-2022-23426
CVSS v3.1
6.0
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
DeX Home and DeX for PC versions prior to SMR Feb-2022 Release 1
Description
A vulnerability using
PendingIntent allows attackers to access files with system privilege.Recommendations
For DeX Home and DeX for PC versions prior to SMR Feb-2022 Release 1, update to SMR Feb-2022 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive files and system privileges until the update is applied.
Fix
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dex Home
Dex For Pc