CVE-2024-20822: Medium severity Samsung Galaxy Store vulnerability
Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Galaxy Storeto a version that resolves this vulnerability.Fixed in 4.5.63.6
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20822?
CVE-2024-20822 has been classified as a high-severity vulnerability due to its potential to allow local attackers access to sensitive information.
How do I fix CVE-2024-20822?
To fix CVE-2024-20822, update the Galaxy Store to version 4.5.63.6 or later.
What systems are affected by CVE-2024-20822?
CVE-2024-20822 affects all versions of the Galaxy Store prior to version 4.5.63.6.
What does CVE-2024-20822 exploit?
CVE-2024-20822 exploits an implicit intent hijacking vulnerability in the AccountActivity feature of the Galaxy Store.
Who is at risk with CVE-2024-20822?
Local attackers are at risk of exploiting CVE-2024-20822 to gain unauthorized access to sensitive information.