First published: Fri Oct 07 2022(Updated: )
Improper authorization in Dynamic Lockscreen prior to SMR Sep-2022 Release 1 in Android R(11) and 3.3.03.66 in Android S(12) allows unauthorized use of javascript interface api.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Dynamic Lockscreen | <3.3.03.66 | |
Android | =11.0 | |
Android | =12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-39862 is considered a high-severity vulnerability due to improper authorization in the Dynamic Lockscreen.
To fix CVE-2022-39862, update your Samsung Dynamic Lockscreen to version 3.3.03.66 or later.
CVE-2022-39862 affects the Samsung Dynamic Lockscreen prior to version 3.3.03.66 on Android R(11) devices.
CVE-2022-39862 is an improper authorization vulnerability in the Dynamic Lockscreen.
CVE-2022-39862 may be exploited locally by an unauthorized user accessing the JavaScript interface API.