CVE-2022-24930: Medium severity samsung wear os vulnerability
An Improper access control vulnerability in StRetailModeReceiver in Wear OS 3.0 prior to Firmware update MAR-2022 Release allows untrusted applications to reset default app settings without a proper permission
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-24930?
CVE-2022-24930 is an improper access control vulnerability in StRetailModeReceiver in Wear OS 3.0 prior to Firmware update MAR-2022 Release that allows untrusted applications to reset default app settings without proper permission.
Which software versions are affected by CVE-2022-24930?
CVE-2022-24930 affects Samsung Wear OS 3.0 prior to Firmware update MAR-2022 Release.
What is the severity of CVE-2022-24930?
The severity of CVE-2022-24930 is medium, with a CVSS score of 3.3.
How can untrusted applications exploit CVE-2022-24930?
Untrusted applications can exploit CVE-2022-24930 to reset default app settings without the proper permission.
Is there a fix for CVE-2022-24930?
Yes, a firmware update released in MAR-2022 addresses the vulnerability and fixes CVE-2022-24930.