cbcvebase.
CVE-2022-23994
published 2022-02-11

CVE-2022-23994: An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to…

low3.3CVSS 3.1
AVLACLPRNUIRSUCNILAN
An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.

Affected

2 ranges
VendorProductVersion rangeFixed in
samsungwear_os< 3.03.0
samsung_mobilesamsung_wearable_devices>= Wear OS 3.0 < Firmware update Feb-2022 ReleaseFirmware update Feb-2022 Release