Samsung Mobile InputManager Improper Access Control Vulnerability

Vulnerability

A vulnerability exists in the InputManager component of Samsung Mobile devices, specifically in the SMR Apr-2025 Release 1. This vulnerability allows local attackers to access the scancode of certain input devices due to improper access control. The issue affects devices running Android 13, 14, and 15.

Impact

Exploitation of this vulnerability could lead to unauthorized access to input device scancodes, potentially allowing for manipulation or interception of input data.

Remediation

Users can apply the Samsung Security Maintenance Release (SMR) for April 2025 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.0
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.