CVE-2021-25505: High severity samsung pass vulnerability
Published Nov 5, 2021
·Updated
Improper authentication in Samsung Pass prior to 3.0.02.4 allows to use app without authentication when lockscreen is unlocked.
Affected Software
1 affected component
Samsung Samsung Pass Android<3.0.02.4
Event History
Nov 5, 2021
CVE Published
via MITRE·02:03 AM
Data Sourced
via MITRE·02:03 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-25505?
CVE-2021-25505 is categorized as a high-severity vulnerability due to improper authentication in Samsung Pass.
2
How do I fix CVE-2021-25505?
To fix CVE-2021-25505, users should update Samsung Pass to version 3.0.02.4 or later.
3
What does CVE-2021-25505 affect?
CVE-2021-25505 affects Samsung Pass versions prior to 3.0.02.4 on Android devices.
4
Can CVE-2021-25505 be exploited remotely?
CVE-2021-25505 cannot be exploited remotely as it requires local access to the device when the lockscreen is unlocked.
5
What kind of authentication issue does CVE-2021-25505 present?
CVE-2021-25505 allows the use of the Samsung Pass app without authentication, undermining user security when the device is unlocked.