CVE-2023-21449: Infoleak
Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper permission.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-21449?
CVE-2023-21449 is an improper access control vulnerability in the Call application prior to SMR Mar-2023 Release 1, which allows local attackers to access sensitive information without proper permission.
What is the severity of CVE-2023-21449?
The severity of CVE-2023-21449 is medium with a CVSS score of 5.5.
What software versions are affected by CVE-2023-21449?
CVE-2023-21449 affects Samsung Android 11.0 SMR versions prior to Mar-2023 Release 1.
How can the CVE-2023-21449 vulnerability be fixed?
To fix CVE-2023-21449, users should update their Samsung Android devices to SMR Mar-2023 Release 1 or a later version.
Where can I find more information about CVE-2023-21449?
You can find more information about CVE-2023-21449 on the [Samsung Mobile Security Updates](https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=03) page.