First published: Wed May 07 2025(Updated: )
Improper input validation in Samsung Flow prior to version 4.9.17.6 allows local attackers to access data within Samsung Flow.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Flow | <4.9.17.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-20971 is classified as a low-severity vulnerability related to improper input validation.
To fix CVE-2025-20971, update Samsung Flow to version 4.9.17.6 or later.
CVE-2025-20971 can be exploited by local attackers to access sensitive data within Samsung Flow.
CVE-2025-20971 affects all versions of Samsung Flow prior to 4.9.17.6.
CVE-2025-20971 is a local vulnerability, meaning it requires local access to exploit.