CVE-2021-25499: High severity samsung galaxy store vulnerability
Published Oct 6, 2021
·Updated
Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows attacker to access content provider of Galaxy Store.
Affected Software
1 affected component
Samsung Galaxy Store<4.5.32.4
Event History
Oct 6, 2021
CVE Published
via MITRE·05:11 PM
Data Sourced
via MITRE·05:11 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-25499?
The severity of CVE-2021-25499 is considered to be moderate as it allows unauthorized access to sensitive content.
2
How do I fix CVE-2021-25499?
To fix CVE-2021-25499, update the Samsung Galaxy Store to version 4.5.32.4 or higher.
3
What type of attack does CVE-2021-25499 allow?
CVE-2021-25499 allows attackers to perform intent redirection to access the content provider of the Galaxy Store.
4
Which version of the Galaxy Store is affected by CVE-2021-25499?
CVE-2021-25499 affects versions of the Galaxy Store prior to 4.5.32.4.
5
Is CVE-2021-25499 specific to any device model?
CVE-2021-25499 is not specific to any device model but affects all devices using the vulnerable version of the Galaxy Store.