CVE-2023-42575: Medium severity samsung pass vulnerability
Published Dec 5, 2023
·Updated
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.
Affected Software
1 affected component
Samsung Pass<4.3.00.17
Event History
Dec 5, 2023
CVE Published
02:44 AM
Data Sourced
02:44 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-42575?
CVE-2023-42575 is classified as a medium severity vulnerability.
2
How do I fix CVE-2023-42575?
To fix CVE-2023-42575, update Samsung Pass to version 4.3.00.17 or later.
3
Who is affected by CVE-2023-42575?
Users of Samsung Pass versions prior to 4.3.00.17 are affected by CVE-2023-42575.
4
What type of attack does CVE-2023-42575 enable?
CVE-2023-42575 allows physical attackers to bypass authentication due to improper flag setting.
5
When was CVE-2023-42575 disclosed?
CVE-2023-42575 was disclosed in December 2023.