CVE-2022-22286
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Exploitability: 1.8 / Impact: 5.2
Source: NVD
Description
A vulnerability using PendingIntent in Bixby Routines prior to version 3.1.21.8 in Android R(11.0) and 2.6.30.5 in Android Q(10.0) allows attackers to execute privileged action by hijacking and modifying the intent.
Affected (2)
Products: Samsung: Bixby Routines
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.1.21.8 |
| Running on/with | Platform Versions |
|---|---|
Google Android | Version 11.0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.30.5 |
| Running on/with | Platform Versions |
|---|---|
Google Android | Version 10.0 |
References (2)
Source: mobile.security@samsung.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.