CVE-2023-21454: Low severity samsung android vulnerability
Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text history on the lockscreen.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-21454?
CVE-2023-21454 has a severity rating that indicates a significant risk due to improper authorization affecting user text history.
How do I fix CVE-2023-21454?
To fix CVE-2023-21454, update your Samsung Keyboard to the latest version provided in the March 2023 security release.
Who is affected by CVE-2023-21454?
CVE-2023-21454 affects devices running certain versions of Android 11 and 12 with the Samsung Keyboard prior to the March 2023 security update.
What type of vulnerability is CVE-2023-21454?
CVE-2023-21454 is categorized as an improper authorization vulnerability that allows a physical attacker to access sensitive information.
Can CVE-2023-21454 lead to data exposure?
Yes, CVE-2023-21454 can lead to unauthorized access to a user's text history, exposing potentially sensitive information.