CVE-2023-21482

Missing authorization vulnerability in Camera prior to versions 11.1.02.18 in Android 11, 12.1.03.8 in Android 12 and 13.1.01.4 in Android 13 allows physical attackers to install package through Galaxy store before completion of Setup wizard.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:samsung:camera:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:samsung:camera:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:a:samsung:camera:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*

History

01 Oct 2025, 20:40

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Google android
Samsung
Google
Samsung camera
CPE cpe:2.3:a:samsung:camera:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=04 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=04 - Vendor Advisory

03 Sep 2025, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-03 06:15

Updated : 2025-10-01 20:40


NVD link : CVE-2023-21482

Mitre link : CVE-2023-21482

CVE.ORG link : CVE-2023-21482


JSON object : View

Products Affected

google

  • android

samsung

  • camera