PT-2025-20053 · Samsung · Samsung Gallery

Dawuge

·

Published

2024-08-07

·

Updated

2025-05-12

·

CVE-2025-20968

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Samsung Gallery versions prior to 14.5.10.3 in Global Android 13 Samsung Gallery versions prior to 14.5.09.3 in China Android 13 Samsung Gallery versions prior to 15.5.04.5 in Android 14
Description The issue is related to improper access control in Samsung Gallery, allowing remote attackers to access data and perform internal operations within the application.
Recommendations For Samsung Gallery version prior to 14.5.10.3 in Global Android 13, update to version 14.5.10.3 or later. For Samsung Gallery version prior to 14.5.09.3 in China Android 13, update to version 14.5.09.3 or later. For Samsung Gallery version prior to 15.5.04.5 in Android 14, update to version 15.5.04.5 or later.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2025-13394
CVE-2025-20968

Affected Products

Samsung Gallery