First published: Wed May 07 2025(Updated: )
Improper authentication in Secure Folder prior to version 1.8.12.0 in Android 13, and 1.9.21.00 in Android 14 allows physical attackers to reset the lock type of Secure Folder.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Secure Folder | <1.8.12.0<1.9.21.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-20973 is considered a moderate severity vulnerability due to the risk of unauthorized access to sensitive information.
To fix CVE-2025-20973, update Samsung Secure Folder to version 1.8.12.0 or later for Android 13, and 1.9.21.00 or later for Android 14.
Users of Samsung Secure Folder on Android versions prior to 1.8.12.0 and 1.9.21.00 are affected by CVE-2025-20973.
An attacker can physically access the device to reset the lock type of Secure Folder, potentially exposing sensitive files.
CVE-2025-20973 was reported in May 2025.