CVE-2022-39915: Medium severity samsung calendar vulnerability
Improper access control vulnerability in Calendar prior to versions 11.6.08.0 in Android Q(10), 12.2.11.3000 in Android R(11), 12.3.07.2000 in Android S(12), and 12.4.02.0 in Android T(13) allows attackers to access sensitive information via implicit intent.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-39915?
CVE-2022-39915 is considered a high severity vulnerability due to improper access control allowing sensitive information leakage.
How do I fix CVE-2022-39915?
To fix CVE-2022-39915, update Samsung Calendar to version 11.6.08.0 or later.
Which versions are affected by CVE-2022-39915?
Samsung Calendar versions prior to 11.6.08.0 are affected by CVE-2022-39915.
What kind of information can attackers access through CVE-2022-39915?
Attackers can access sensitive user information through implicit intents due to inadequate access controls.
Is CVE-2022-39915 a problem for Google Android devices?
CVE-2022-39915 specifically affects Samsung Calendar on certain Android versions, but Google Android versions are not vulnerable.