PT-2025-35663 · Samsung · Slocation

Published

2025-09-03

·

Updated

2025-09-19

·

CVE-2023-21470

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions SLocation versions prior to SMR Apr-2022 Release 1
Description An improper access control issue exists in SLocation. Local attackers can obtain device location information by utilizing the com.samsung.android.wifi.NETWORK LOCATION action.
Recommendations Update SLocation to SMR Apr-2022 Release 1 or later.

Fix

Related Identifiers

CVE-2023-21470

Affected Products

Slocation