Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25634 | PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission. |
Mon, 08 Sep 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung android
|
|
| CPEs | cpe:2.3:o:samsung:android:11.0:-:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-apr-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-apr-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-aug-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-aug-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-dec-2020-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-dec-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-dec-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-feb-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-feb-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-feb-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jan-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jan-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jan-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jul-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jul-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jun-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-jun-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-mar-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-mar-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-mar-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-may-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-may-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-nov-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-nov-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-oct-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-oct-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-sep-2021-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:11.0:smr-sep-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:-:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-apr-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-aug-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-dec-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-feb-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-feb-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-jan-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-jul-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-jun-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-mar-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-mar-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-may-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-nov-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-oct-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:12.0:smr-sep-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:-:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-apr-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-aug-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-dec-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-feb-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-feb-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-jan-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-jan-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-jul-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-jun-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-mar-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-mar-2023-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-may-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-nov-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-oct-2022-r1:*:*:*:*:*:* cpe:2.3:o:samsung:android:13.0:smr-sep-2022-r1:*:*:*:*:*:* |
|
| Vendors & Products |
Samsung android
|
Wed, 03 Sep 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Samsung Samsung mobile Samsung samsung Mobile |
|
| Vendors & Products |
Google
Google android Samsung Samsung mobile Samsung samsung Mobile |
Wed, 03 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-287 | |
| Metrics |
ssvc
|
Wed, 03 Sep 2025 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2025-09-03T15:44:11.986Z
Reserved: 2022-11-14T08:58:53.180Z
Link: CVE-2023-21466
Updated: 2025-09-03T14:11:41.663Z
Status : Analyzed
Published: 2025-09-03T06:15:38.243
Modified: 2025-09-08T15:02:31.317
Link: CVE-2023-21466
No data.
OpenCVE Enrichment
Updated: 2025-09-03T20:26:57Z
EUVD