First published: Fri Apr 09 2021(Updated: )
Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of service.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
SmartThings | <1.7.63.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25378 is classified as a high severity vulnerability due to its potential for remote temporary denial of service.
To fix CVE-2021-25378, upgrade Samsung SmartThings to version 1.7.63.6 or later.
CVE-2021-25378 affects Samsung SmartThings versions prior to 1.7.63.6.
CVE-2021-25378 enables a remote temporary denial of service attack.
Using versions of SmartThings before 1.7.63.6 is not safe due to the existence of CVE-2021-25378.