← Back

CVE-2024-20805

nvd nist
Published: Jan 4, 2024Modified: Jun 3, 2025

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.

Affected (66)

Products: Samsung: Android, Myfiles
2 products
Android
Myfiles
Configuration A
65 vulnerable
Vulnerable SoftwareAffected Versions
Samsung
Version 11.0
Version 11.0 smr-apr-2021-r1
Version 11.0 smr-apr-2022-r1
Version 11.0 smr-apr-2023-r1
Version 11.0 smr-aug-2021-r1
Version 11.0 smr-aug-2022-r1
Version 11.0 smr-aug-2023-r1
Version 11.0 smr-dec-2020-r1
Version 11.0 smr-dec-2021-r1
Version 11.0 smr-dec-2022-r1
Version 11.0 smr-dec-2023-r1
Version 11.0 smr-feb-2021-r1
Version 11.0 smr-feb-2022-r1
Version 11.0 smr-feb-2023-r1
Version 11.0 smr-jan-2021-r1
Version 11.0 smr-jan-2022-r1
Version 11.0 smr-jan-2023-r1
Version 11.0 smr-jul-2021-r1
Version 11.0 smr-jul-2022-r1
Version 11.0 smr-jul-2023-r1
Version 11.0 smr-jun-2021-r1
Version 11.0 smr-jun-2022-r1
Version 11.0 smr-jun-2023-r1
Version 11.0 smr-mar-2021-r1
Version 11.0 smr-mar-2022-r1
Version 11.0 smr-mar-2023-r1
Version 11.0 smr-may-2021-r1
Version 11.0 smr-may-2022-r1
Version 11.0 smr-may-2023-r1
Version 11.0 smr-nov-2021-r1
Version 11.0 smr-nov-2022-r1
Version 11.0 smr-nov-2023-r1
Version 11.0 smr-oct-2021-r1
Version 11.0 smr-oct-2022-r1
Version 11.0 smr-oct-2023-r1
Version 11.0 smr-sep-2021-r1
Version 11.0 smr-sep-2022-r1
Version 11.0 smr-sep-2023-r1
Version 12.0
Version 12.0 smr-apr-2022-r1
Version 12.0 smr-apr-2023-r1
Version 12.0 smr-aug-2022-r1
Version 12.0 smr-aug-2023-r1
Version 12.0 smr-dec-2021-r1
Version 12.0 smr-dec-2022-r1
Version 12.0 smr-dec-2023-r1
Version 12.0 smr-feb-2022-r1
Version 12.0 smr-feb-2023-r1
Version 12.0 smr-jan-2022-r1
Version 12.0 smr-jan-2023-r1
Version 12.0 smr-jul-2022-r1
Version 12.0 smr-jul-2023-r1
Version 12.0 smr-jun-2022-r1
Version 12.0 smr-jun-2023-r1
Version 12.0 smr-mar-2022-r1
Version 12.0 smr-mar-2023-r1
Version 12.0 smr-may-2022-r1
Version 12.0 smr-may-2023-r1
Version 12.0 smr-nov-2021-r1
Version 12.0 smr-nov-2022-r1
Version 12.0 smr-nov-2023-r1
Version 12.0 smr-oct-2022-r1
Version 12.0 smr-oct-2023-r1
Version 12.0 smr-sep-2022-r1
Version 12.0 smr-sep-2023-r1
Configuration B
1 vulnerable · 16 platform
Vulnerable SoftwareAffected Versions
Before 14.5.00.21
Running on/withPlatform Versions
Samsung
Android
Version 13.0
Samsung
Android
Version 13.0 smr-apr-2023-r1
Samsung
Android
Version 13.0 smr-aug-2023-r1
Samsung
Android
Version 13.0 smr-dec-2022-r1
Samsung
Android
Version 13.0 smr-dec-2023-r1
Samsung
Android
Version 13.0 smr-feb-2023-r1
Samsung
Android
Version 13.0 smr-jan-2023-r1
Samsung
Android
Version 13.0 smr-jul-2023-r1
Samsung
Android
Version 13.0 smr-jun-2023-r1
Samsung
Android
Version 13.0 smr-mar-2023-r1
Samsung
Android
Version 13.0 smr-may-2023-r1
Samsung
Android
Version 13.0 smr-nov-2022-r1
Samsung
Android
Version 13.0 smr-nov-2023-r1
Samsung
Android
Version 13.0 smr-oct-2022-r1
Samsung
Android
Version 13.0 smr-oct-2023-r1
Samsung
Android
Version 13.0 smr-sep-2023-r1

References (2)

Source: mobile.security@samsung.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.