Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to decrypt encrypted messages or inject commands.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=02 | Vendor Advisory |
Configurations
Information
Published : 2023-02-09 11:15
Updated : 2023-02-17 07:43
NVD link : CVE-2023-21443
Mitre link : CVE-2023-21443
JSON object : View
CWE
CWE-326
Inadequate Encryption Strength
Products Affected
samsung
- flow