Sensitive Information Exposure in Quick Share Agent by Samsung
CVE-2023-21462

4.2MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
16 March 2023

What is CVE-2023-21462?

A vulnerability in Samsung's Quick Share Agent allows local attackers to exploit sensitive information exposure. Specifically, the flaw permits unauthorized access to the device's MAC address without the necessary permissions. This issue affects users on Android 12 and Android 13 running versions prior to 3.5.14.18 and 3.5.16.20, respectively. To mitigate this risk, it is advisable for users to update their applications to the latest available versions, ensuring enhanced security measures against potential data leaks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Quick Share Agent < 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.