Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-25343


Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.13 (in Android P(9.0) and above) allows unauthorized actions including denial of service attack by hijacking the provider.


Published

2021-03-04T22:15:13.970

Last Modified

2024-11-21T05:54:47.977

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.0 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Secondary
    CWE-287
  • Type: Primary
    CWE-287

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application samsung members < 2.4.81.13 Yes
Operating System google android 1.0 No
Operating System google android 1.1 No
Operating System google android 1.5 No
Operating System google android 1.6 No
Operating System google android 2.0 No
Operating System google android 2.0.1 No
Operating System google android 2.1 No
Operating System google android 2.2 No
Operating System google android 2.2 No
Operating System google android 2.2.1 No
Operating System google android 2.2.2 No
Operating System google android 2.2.3 No
Operating System google android 2.3 No
Operating System google android 2.3 No
Operating System google android 2.3.1 No
Operating System google android 2.3.2 No
Operating System google android 2.3.3 No
Operating System google android 2.3.4 No
Operating System google android 2.3.5 No
Operating System google android 2.3.6 No
Operating System google android 2.3.7 No
Operating System google android 3.0 No
Operating System google android 3.1 No
Operating System google android 3.2 No
Operating System google android 3.2.1 No
Operating System google android 3.2.2 No
Operating System google android 3.2.4 No
Operating System google android 3.2.6 No
Operating System google android 4.0 No
Operating System google android 4.0.1 No
Operating System google android 4.0.2 No
Operating System google android 4.0.3 No
Operating System google android 4.0.4 No
Operating System google android 4.1 No
Operating System google android 4.1.1 No
Operating System google android 4.1.2 No
Operating System google android 4.2 No
Operating System google android 4.2.1 No
Operating System google android 4.2.2 No
Operating System google android 4.3 No
Operating System google android 4.3.1 No
Operating System google android 4.4 No
Operating System google android 4.4.1 No
Operating System google android 4.4.2 No
Operating System google android 4.4.3 No
Operating System google android 4.4.4 No
Operating System google android 5.0 No
Operating System google android 5.0.1 No
Operating System google android 5.0.2 No
Operating System google android 5.1 No
Operating System google android 5.1.0 No
Operating System google android 5.1.1 No
Operating System google android 6.0 No
Operating System google android 6.0.1 No
Operating System google android 7.0 No
Operating System google android 7.1.0 No
Operating System google android 7.1.1 No
Operating System google android 7.1.2 No
Operating System google android 8.0 No
Operating System google android 8.1 No
Application samsung members < 3.8.00.13 Yes
Operating System google android 9.0 No
Operating System google android 10.0 No
Operating System google android 11.0 No

References