Description
Sensitive information exposure vulnerability in EventType in SecTelephonyProvider prior to SMR Jul-2022 Release 1 allows local attackers with log access permission to get IMSI through device log.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-36727 | Sensitive information exposure vulnerability in EventType in SecTelephonyProvider prior to SMR Jul-2022 Release 1 allows local attackers with log access permission to get IMSI through device log. |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: Samsung Mobile
Published:
Updated: 2024-08-03T08:09:22.421Z
Reserved: 2022-06-15T00:00:00.000Z
Link: CVE-2022-33688
No data.
Status : Modified
Published: 2022-07-12T14:15:17.183
Modified: 2024-11-21T07:08:19.973
Link: CVE-2022-33688
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD