Samsung ContactProvider
cpe:2.3:a:samsung:contacts_provider:*:*:*:*:android:*:*
- >= 14, < 15
A vulnerability exists in the ContactProvider component of Samsung devices, related to improper access control. This issue, present in versions of Android prior to the September 2025 Security Maintenance Release, allows local attackers to access sensitive information. The vulnerability has been privately disclosed and is part of the Samsung Vulnerabilities and Exposures (SVE) program.
Exploitation of this vulnerability could lead to unauthorized access to sensitive information.
Users can apply the September 2025 Security Maintenance Release, which includes the necessary patch for this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.