CVE Vulnerabilities

CVE-2025-21049

Published: Oct 10, 2025 | Modified: Oct 23, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.

Affected Software

NameVendorStart VersionEnd Version
AndroidSamsung15.0 (including)15.0 (including)
AndroidSamsung15.0-smr-apr-2025-r1 (including)15.0-smr-apr-2025-r1 (including)
AndroidSamsung15.0-smr-aug-2025-r1 (including)15.0-smr-aug-2025-r1 (including)
AndroidSamsung15.0-smr-jul-2025-r1 (including)15.0-smr-jul-2025-r1 (including)
AndroidSamsung15.0-smr-jun-2025-r1 (including)15.0-smr-jun-2025-r1 (including)
AndroidSamsung15.0-smr-mar-2025-r1 (including)15.0-smr-mar-2025-r1 (including)
AndroidSamsung15.0-smr-may-2025-r1 (including)15.0-smr-may-2025-r1 (including)
AndroidSamsung15.0-smr-sep-2025-r1 (including)15.0-smr-sep-2025-r1 (including)
AndroidSamsung16.0 (including)16.0 (including)
AndroidSamsung16.0-smr-aug-2025-r1 (including)16.0-smr-aug-2025-r1 (including)
AndroidSamsung16.0-smr-sep-2025-r1 (including)16.0-smr-sep-2025-r1 (including)

References