Using PendingIntent with implicit intent in Bixby Voice prior to version 3.0.52.14 allows attackers to execute privileged action by hijacking and modifying the intent.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb | Vendor Advisory |
https://security.samsungmobile.com/ | Vendor Advisory |
Configurations
Information
Published : 2021-03-25 10:15
Updated : 2022-08-12 11:02
NVD link : CVE-2021-25352
Mitre link : CVE-2021-25352
JSON object : View
CWE
CWE-668
Exposure of Resource to Wrong Sphere
Products Affected
samsung
- bixby_voice