An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection mechanism in TEE.
The product fails to adequately prevent the revealing of unnecessary and potentially sensitive system information within debugging messages.
Link | Tags |
---|---|
https://security.samsungmobile.com/securityUpdate.smsb?year=2021&month=10 | vendor advisory |