CVE-2024-49421
4.3
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: mobile.security@samsung.com (Secondary)
Description
Path traversal in Quick Share Agent prior to version 3.5.14.47 in Android 12, 3.5.19.41 in Android 13, and 3.5.19.42 in Android 14 allows adjacent attackers to write file in arbitrary location.
Affected (3)
Products: Samsung: Quick Share
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.5.19.41 |
| Running on/with | Platform Versions |
|---|---|
Google Android | Version 13.0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.5.19.42 |
| Running on/with | Platform Versions |
|---|---|
Google Android | Version 14.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.5.14.47 |
| Running on/with | Platform Versions |
|---|---|
Google Android | Version 12.0 |
References (1)
Source: mobile.security@samsung.com
Vendor Advisory
Timeline
No history available yet.