CVE Vulnerabilities

CVE-2025-21049

Published: Oct 10, 2025 | Modified: Oct 23, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.

Affected Software

Name Vendor Start Version End Version
Android Samsung 15.0 (including) 15.0 (including)
Android Samsung 15.0-smr-apr-2025-r1 (including) 15.0-smr-apr-2025-r1 (including)
Android Samsung 15.0-smr-aug-2025-r1 (including) 15.0-smr-aug-2025-r1 (including)
Android Samsung 15.0-smr-jul-2025-r1 (including) 15.0-smr-jul-2025-r1 (including)
Android Samsung 15.0-smr-jun-2025-r1 (including) 15.0-smr-jun-2025-r1 (including)
Android Samsung 15.0-smr-mar-2025-r1 (including) 15.0-smr-mar-2025-r1 (including)
Android Samsung 15.0-smr-may-2025-r1 (including) 15.0-smr-may-2025-r1 (including)
Android Samsung 15.0-smr-sep-2025-r1 (including) 15.0-smr-sep-2025-r1 (including)
Android Samsung 16.0 (including) 16.0 (including)
Android Samsung 16.0-smr-aug-2025-r1 (including) 16.0-smr-aug-2025-r1 (including)
Android Samsung 16.0-smr-sep-2025-r1 (including) 16.0-smr-sep-2025-r1 (including)

References