Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attackers to set custom DNS server without permission via binding WifiService.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=01 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-02-09 19:15
Updated : 2023-02-21 16:13
NVD link : CVE-2023-21422
Mitre link : CVE-2023-21422
CVE.ORG link : CVE-2023-21422
JSON object : View
Products Affected
samsung
- android