CVE-2021-25471: Input Validation
Published Oct 6, 2021
·Updated
A lack of replay attack protection in Security Mode Command process prior to SMR Oct-2021 Release 1 can lead to denial of service on mobile network connection and battery depletion.
Affected Software
4 affected components
Google Android=8.1
Google Android=9.0
Google Android=10.0
Samsung Exynos
Event History
Oct 6, 2021
CVE Published
via MITRE·05:08 PM
Data Sourced
via MITRE·05:08 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-25471?
CVE-2021-25471 is a vulnerability that involves a lack of replay attack protection in the Security Mode Command process prior to SMR Oct-2021 Release 1, which can lead to denial of service on mobile network connection and battery depletion.
2
What is the severity of CVE-2021-25471?
CVE-2021-25471 has a severity rating of 7.5, which is classified as high.
3
Which software versions are affected by CVE-2021-25471?
CVE-2021-25471 affects Google Android versions 8.1, 9.0, and 10.0.
4
How can CVE-2021-25471 be exploited?
CVE-2021-25471 can be exploited by an attacker performing a replay attack on the Security Mode Command process.
5
Is Samsung Exynos vulnerable to CVE-2021-25471?
No, Samsung Exynos is not vulnerable to CVE-2021-25471.