PT-2024-26015 · Samsung · Samsung Flow

Dawuge

·

Published

2024-07-02

·

Updated

2024-07-02

·

CVE-2024-34600

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions Samsung Flow versions prior to 4.9.13.0
Description The issue is related to improper verification of intent by a broadcast receiver in Samsung Flow, allowing local attackers to copy image files to external storage.
Recommendations For versions prior to 4.9.13.0, update to version 4.9.13.0 or later to resolve the issue.

Fix

Related Identifiers

CVE-2024-34600

Affected Products

Samsung Flow