First published: Tue Nov 07 2023(Updated: )
Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Pass | <4.3.00.17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-42554.
The severity of CVE-2023-42554 is medium (6.8).
The affected software for CVE-2023-42554 is Samsung Pass prior to version 4.3.00.17.
Physical attackers can exploit CVE-2023-42554 to bypass authentication in Samsung Pass prior to version 4.3.00.17.
Yes, updating to version 4.3.00.17 or later of Samsung Pass will fix the vulnerability.