CVE-2022-23994: Medium severity samsung wear os vulnerability
Published Feb 11, 2022
·Updated
An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
Affected Software
1 affected component
Samsung Wear Os<3.0
Event History
Feb 11, 2022
CVE Published
via MITRE·05:40 PM
Data Sourced
via MITRE·05:40 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-23994.
2
What is the severity level of CVE-2022-23994?
The severity level of CVE-2022-23994 is medium.
3
How can untrusted applications change bedtime mode in Wear OS 3.0?
Untrusted applications can change bedtime mode in Wear OS 3.0 by exploiting this vulnerability.
4
Which software versions are affected by CVE-2022-23994?
CVE-2022-23994 affects Wear OS 3.0 prior to the February 2022 firmware update.
5
How can I fix the vulnerability CVE-2022-23994?
To fix the vulnerability CVE-2022-23994, update Wear OS to the latest firmware version released in February 2022.