CVE-2024-20824: Medium severity Samsung Galaxy Store vulnerability
Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
VoiceSearch (Galaxy Store)to a version that resolves this vulnerability.Fixed in 4.5.63.6
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20824?
CVE-2024-20824 has been identified as a medium severity vulnerability.
How do I fix CVE-2024-20824?
To fix CVE-2024-20824, update the Galaxy Store application to version 4.5.63.6 or later.
What type of data is exposed in CVE-2024-20824?
CVE-2024-20824 allows local attackers to access sensitive information via implicit intent.
Which devices are affected by CVE-2024-20824?
CVE-2024-20824 affects the Galaxy Store prior to version 4.5.63.6 on Samsung devices.
Is there a workaround for CVE-2024-20824?
Currently, the recommended action for CVE-2024-20824 is to update the application, as there are no verified workarounds.