Android
cpe:2.3:o:samsung:android:*:*:*:*:*:*:*
- >= 15, < 15.0.0.0
A vulnerability exists in the Mdecservice component of Samsung Android devices, specifically in versions prior to the April 2025 Security Maintenance Release. This vulnerability allows local attackers to access arbitrary files with system privileges, potentially leading to unauthorized data access or manipulation.
Exploitation of this vulnerability could result in unauthorized access to sensitive files with system privileges, allowing for potential misuse of this data or disruption of system functions.
Users can apply the April 2025 Security Maintenance Release to address this vulnerability. This update is part of the regular monthly security update process for Samsung devices.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.