Improper access control vulnerability in BootCompletedReceiver_CMCC in DeviceManagement prior to SMR Nov-2022 Release 1 allows local attacker to access to Device information.
The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.
The product does not handle or incorrectly handles an exceptional condition.
Link | Tags |
---|---|
https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=11 | vendor advisory |