CVE-2021-25432: Infoleak
Published Jul 8, 2021
·Updated
Information exposure vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to access chat data.
Affected Software
4 affected components
Samsung Samsung Members<2.4.85.11
Google Android<=8.1
Samsung Samsung Members=3.9.10.11
Google Android>=9.0
Event History
Jul 8, 2021
CVE Published
via MITRE·01:45 PM
Data Sourced
via MITRE·01:45 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-25432?
CVE-2021-25432 is classified as a high severity information exposure vulnerability.
2
How do I fix CVE-2021-25432?
To fix CVE-2021-25432, update Samsung Members to version 2.4.85.11 or later for Android O and 3.9.10.11 or later for Android P.
3
Who is affected by CVE-2021-25432?
CVE-2021-25432 affects users of Samsung Members prior to versions 2.4.85.11 and 3.9.10.11, specifically on Android O and P.
4
What type of data is exposed in CVE-2021-25432?
CVE-2021-25432 allows untrusted applications to access sensitive chat data.
5
Is CVE-2021-25432 related to any specific devices?
CVE-2021-25432 primarily impacts Samsung devices utilizing the vulnerable versions of Samsung Members software.