Security Advisory

CVE-2021-25373

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-04-09 17:37:27
Last updated 2024-08-03 20:03:05
Assigner Samsung Mobile
State PUBLISHED

Description

Using unsafe PendingIntent in Customization Service prior to version 2.2.02.1 in Android O(8.x), 2.4.03.0 in Android P(9.0), 2.7.02.1 in Android Q(10.0) and 2.9.01.1 in Android R(11.0) allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.