CVE Vulnerabilities

CVE-2025-21080

Published: Dec 02, 2025 | Modified: Dec 05, 2025
CVSS 3.x
7.1
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access files with Dynamic Lockscreens privilege.

Affected Software

NameVendorStart VersionEnd Version
AndroidSamsung15.0 (including)15.0 (including)
AndroidSamsung15.0-smr-apr-2025-r1 (including)15.0-smr-apr-2025-r1 (including)
AndroidSamsung15.0-smr-aug-2025-r1 (including)15.0-smr-aug-2025-r1 (including)
AndroidSamsung15.0-smr-jul-2025-r1 (including)15.0-smr-jul-2025-r1 (including)
AndroidSamsung15.0-smr-jun-2025-r1 (including)15.0-smr-jun-2025-r1 (including)
AndroidSamsung15.0-smr-mar-2025-r1 (including)15.0-smr-mar-2025-r1 (including)
AndroidSamsung15.0-smr-may-2025-r1 (including)15.0-smr-may-2025-r1 (including)
AndroidSamsung15.0-smr-nov-2025-r1 (including)15.0-smr-nov-2025-r1 (including)
AndroidSamsung15.0-smr-oct-2025-r1 (including)15.0-smr-oct-2025-r1 (including)
AndroidSamsung15.0-smr-sep-2025-r1 (including)15.0-smr-sep-2025-r1 (including)
AndroidSamsung16.0 (including)16.0 (including)
AndroidSamsung16.0-smr-aug-2025-r1 (including)16.0-smr-aug-2025-r1 (including)
AndroidSamsung16.0-smr-nov-2025-r1 (including)16.0-smr-nov-2025-r1 (including)
AndroidSamsung16.0-smr-oct-2025-r1 (including)16.0-smr-oct-2025-r1 (including)
AndroidSamsung16.0-smr-sep-2025-r1 (including)16.0-smr-sep-2025-r1 (including)

References