CVE-2021-25398Dead Code in Mobile Bixby Voice

CWE-561Dead Code3 documents3 sources
Severity
3.3LOWNVD
EPSS
0.1%
top 79.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 11
Latest updateMay 24

Description

Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 1.8 | Impact: 1.4

Affected Packages2 packages

NVDsamsung/bixby_voice< 3.1.12
CVEListV5samsung_mobile/bixby_voiceunspecified3.1.12

🔴Vulnerability Details

2
GHSA
GHSA-8rrr-mx3h-pww8: Intent redirection vulnerability in Bixby Voice prior to version 32022-05-24
CVEList
CVE-2021-25398: Intent redirection vulnerability in Bixby Voice prior to version 32021-06-11
CVE-2021-25398 — Dead Code in Mobile Bixby Voice | cvebase