CVE-2023-21492
MEDIUM
4,4
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: high
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: none
Availability: none
Description
AI Translation Available
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0041
Percentile
0,6th
Updated
EPSS Score Trend (Last 90 Days)
532
Insertion of Sensitive Information into Log File
IncompleteCommon Consequences
Security Scopes Affected:
Confidentiality
Potential Impacts:
Read Application Data
Applicable Platforms
All platforms may be affected
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-feb-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-jan-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-apr-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-aug-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-aug-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-feb-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-may-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-feb-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-dec-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jul-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-jul-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-dec-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jun-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-apr-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-sep-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-dec-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-mar-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-sep-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-jan-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-dec-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-nov-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-mar-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-feb-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jan-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-feb-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-may-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-apr-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-oct-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-mar-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-jan-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jul-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-oct-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-apr-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-mar-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-nov-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-sep-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-jun-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:-:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-aug-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-jan-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-nov-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jan-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-oct-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-feb-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-sep-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-may-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jan-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-mar-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-jun-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-apr-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-nov-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-jun-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-dec-2020-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-dec-2021-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-aug-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-nov-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-apr-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:-:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-feb-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:-:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-jul-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-mar-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-may-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-nov-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:13.0:smr-oct-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-apr-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:12.0:smr-dec-2022-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Android by Samsung
CPE Identifier
View Detailed Analysis
cpe:2.3:o:samsung:android:11.0:smr-mar-2023-r1:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023…
https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=05
https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=05