Improper access control in Mdecservice prior to SMR Apr-2025 Release 1 allows local attackers to access arbitrary files with system privilege.
References
| Link | Resource |
|---|---|
| https://security.samsungmobile.com/securityUpdate.smsb?year=2025&month=04 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
02 Feb 2026, 18:18
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:samsung:android:15.0:smr-mar-2025-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:15.0:smr-jan-2025-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:15.0:smr-feb-2025-r1:*:*:*:*:*:* |
|
| References | () https://security.samsungmobile.com/securityUpdate.smsb?year=2025&month=04 - Vendor Advisory | |
| First Time |
Samsung android
Samsung |
|
| CWE | NVD-CWE-noinfo |
09 Apr 2025, 20:02
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
09 Apr 2025, 08:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-04-09 08:15
Updated : 2026-02-02 18:18
NVD link : CVE-2025-20952
Mitre link : CVE-2025-20952
CVE.ORG link : CVE-2025-20952
JSON object : View
Products Affected
samsung
- android
CWE
