PT-2024-26018 · Samsung · Samsung Message

Khilli

·

Published

2024-07-07

·

Updated

2024-07-11

·

CVE-2024-34603

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Samsung Message versions prior to SMR Jul-2024 Release 1
Description The issue is related to improper access control, allowing local attackers to access location data. This could potentially lead to unauthorized access to sensitive information.
Recommendations For Samsung Message versions prior to SMR Jul-2024 Release 1, update to the SMR Jul-2024 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting access to location data until the update is applied.

Fix

Related Identifiers

CVE-2024-34603

Affected Products

Samsung Message