Samsung Galaxy Store Improper Signature Verification Vulnerability Allowing Arbitrary Application Installation

Vulnerability

A vulnerability in Samsung Galaxy Store, prior to version 4.6.03.8, allows local attackers to install arbitrary applications due to improper verification of cryptographic signatures. The issue arises from inadequate access control, which the latest version addresses by implementing proper access restrictions.

Impact

Exploitation of this vulnerability could lead to unauthorized installation of applications, potentially allowing for malicious software to be introduced onto the device.

Remediation

Users can update to Samsung Galaxy Store version 4.6.03.8 or later to address this vulnerability.

Added: Mar 16, 2026, 2:24 PM
Updated: Mar 16, 2026, 2:24 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.2
exploitability
3.3
remediation
7.7
relevance
4.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.