CVE-2021-25369: Samsung Mobile Devices Improper Access Control Vulnerability
Samsung mobile devices using Mali GPU contains an improper access control vulnerability in seclog file. Exploitation of the vulnerability exposes sensitive kernel information to the userspace. This vulnerability was chained with CVE-2021-25337 and CVE-2021-25370.
Other sources
An improper access control vulnerability in seclog file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Samsung mobile devicesto a version that resolves this vulnerability.Patch SMR MAR-2021 Release 1
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2021-25369.
What is the title of this vulnerability?
The title of this vulnerability is 'Samsung Mobile Devices Improper Access Control Vulnerability'.
What is the affected software?
The affected software is Samsung mobile devices.
What is the impact of this vulnerability?
The vulnerability exposes sensitive kernel information to the userspace.
Are there any references available for this vulnerability?
Yes, you can find more information about this vulnerability in the Samsung Mobile Security Updates page.