CVE Published: 08/10/2024 |
CVE Updated: 08/10/2024 |
CVE Year: 2024 Source: SamsungMobile |
Vendor: Samsung Mobile |
Product: SamsungVideoPlayer Status : PUBLISHED
CVE-2024-34672 Description
Improper input validation in SamsungVideoPlayer prior to versions 7.3.29.1 in Android 12, 7.3.36.1 in Android 13, and 7.3.41.230 in Android 14 allows local attackers to access video file of other users.
Metrics
CVSS Version: 3.1 |
Base Score: 5.5 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N