First published: Wed Oct 06 2021(Updated: )
Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows attacker to access content provider of Galaxy Store.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy Store | <4.5.32.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-25499 is considered to be moderate as it allows unauthorized access to sensitive content.
To fix CVE-2021-25499, update the Samsung Galaxy Store to version 4.5.32.4 or higher.
CVE-2021-25499 allows attackers to perform intent redirection to access the content provider of the Galaxy Store.
CVE-2021-25499 affects versions of the Galaxy Store prior to 4.5.32.4.
CVE-2021-25499 is not specific to any device model but affects all devices using the vulnerable version of the Galaxy Store.