Description
Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-30473 | Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission. |
References
History
No history.
Status: PUBLISHED
Assigner: Samsung Mobile
Published:
Updated: 2024-08-03T04:49:43.612Z
Reserved: 2022-02-23T00:00:00.000Z
Link: CVE-2022-25833
No data.
Status : Modified
Published: 2022-04-11T20:15:20.847
Modified: 2024-11-21T06:53:05.213
Link: CVE-2022-25833
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD