Samsung GoodLock Improper Component Export Vulnerability Allowing Arbitrary Application Installation

Vulnerability

A vulnerability in Samsung GoodLock, prior to version 2.2.04.95, allows local attackers to install arbitrary applications from the Galaxy Store. This issue arises from an improper export of components, which can be exploited to bypass normal application installation restrictions.

Impact

Exploitation of this vulnerability could lead to unauthorized installation of applications, potentially allowing for malicious software to be introduced onto the device.

Remediation

Users can update to Samsung GoodLock version 2.2.04.95 or later to address this vulnerability.

Added: Sep 4, 2025, 11:44 AM
Updated: Sep 4, 2025, 3:50 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.0
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.