Описание
Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interaction. The patch adds proper permission for vulnerable activities.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 21.3.51.11 (исключая)
cpe:2.3:a:samsung:voice_note:*:*:*:*:*:*:*:*
EPSS
Процентиль: 18%
0.00057
Низкий
6.2 Medium
CVSS3
5.5 Medium
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-862
CWE-862
Связанные уязвимости
CVSS3: 5.5
github
почти 4 года назад
Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interaction. The patch adds proper permission for vulnerable activities.
EPSS
Процентиль: 18%
0.00057
Низкий
6.2 Medium
CVSS3
5.5 Medium
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-862
CWE-862