cbcvebase.
CVE-2026-21002
published 2026-03-16

CVE-2026-21002: Improper verification of cryptographic signature in Galaxy Store prior to version 4.6.03.8 allows local attacker to install arbitrary application.

medium5.9CVSS 4.0
AVLACLATPPRNUINVCNVIHVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
Improper verification of cryptographic signature in Galaxy Store prior to version 4.6.03.8 allows local attacker to install arbitrary application.

Affected

1 ranges
VendorProductVersion rangeFixed in
samsunggalaxy_store< 4.6.03.84.6.03.8