CVE-2021-25343: Medium severity samsung members vulnerability
Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.13 (in Android P(9.0) and above) allows unauthorized actions including denial of service attack by hijacking the provider.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-25343?
CVE-2021-25343 has a high severity rating due to its potential for unauthorized actions and denial of service attacks.
How do I fix CVE-2021-25343?
To fix CVE-2021-25343, update the Samsung Members app to version 2.4.81.13 or later.
Which versions are affected by CVE-2021-25343?
CVE-2021-25343 affects Samsung Members versions prior to 2.4.81.13 on Android O (8.1) and below, and versions before 3.8.00.13 on Android P (9.0) and above.
What impact does CVE-2021-25343 have?
The impact of CVE-2021-25343 includes unauthorized access to app services and potential service disruptions.
Is there a workaround for CVE-2021-25343?
There are no documented workarounds for CVE-2021-25343; the only resolution is to update the affected app.