Privileged Activities Can Be Launched by Local Attackers Due to Improper Access Control Before SMR Jul-2024 Release 1
CVE-2024-34585

7.8HIGH

Key Information:

Vendor

Samsung

Vendor
CVE Published:
2 July 2024

What is CVE-2024-34585?

An improper access control vulnerability has been identified in the launchApp function of Samsung's SystemUI, affecting versions prior to the SMR July 2024 Release 1. This vulnerability enables local attackers to exploit insecure access controls, potentially allowing them to launch privileged activities on affected devices. Such unauthorized actions could compromise the integrity and security of the operating environment, underscoring the importance of timely updates and patches. For more information and updates, visit the official Samsung security site.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Samsung Mobile Devices SMR Jul-2024 Release in Android 14

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.