CVE-2026-21108: Bixby Touch vulnerability
Published Sep 9, 2026
·Updated
Improper export of android application components in Bixby Touch prior to version 4.3.01.17 allows local attackers to access sensitive information.
Affected Software
1 affected component
Bixby Touch<4.3.01.17
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Bixby Touchto a version that resolves this vulnerability.Fixed in 4.3.01.17
Event History
Sep 9, 2026
CVE Published
via MITRE·04:47 AM
Data Sourced
via MITRE·04:47 AM
DescriptionWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An attacker needs local access to an affected Android device. The available information does not indicate that remote exploitation is possible.
2
What is the impact of successful exploitation?
A local attacker may be able to access sensitive information through improperly exported Android application components in Bixby Touch.
3
Which versions are affected?
Bixby Touch versions prior to 4.3.01.17 are affected. Updating to version 4.3.01.17 or later addresses the affected version range.