Indian govt issues high risk warning against Samsung phone users
By MYBRANDBOOK
The Computer Emergency Response Team of India (CERT-In), has issued a high-risk warning for Samsung mobile phone users regarding multiple vulnerabilities. The warning highlights critical security issues affecting Samsung Mobile Android versions 11, 12, 13, and 14. These vulnerabilities are rated HIGH due to their potential impact and ease of exploitation.
CERT-In researchers have reportedly identified multiple vulnerabilities in Samsung products that pose significant threats, and can potentially allow attackers to bypass security restrictions, access sensitive information, and execute arbitrary code on targeted systems. These vulnerabilities are diverse and impact various components of the Samsung ecosystem, as detailed in the CERT-In advisory.
According to CERT-In, the identified vulnerabilities in Samsung products stem from issues like -
● Improper access control in Knox features.
● Integer overflow flaw in facial recognition software.
● Authorisation issues with the AR Emoji app.
● Incorrect handling of errors in Knox security software.
● Multiple memory corruption vulnerabilities in various system components.
● Incorrect data size verification in the softsimd library.
● Unvalidated user input in the Smart Clip app.
● Hijacking of certain app interactions in contacts.
The effective exploitation of these vulnerabilities could result in serious repercussions. This may include scenarios where an attacker could initiate a heap overflow and stack-based buffer overflow, gain access to the device SIM PIN, send broadcasts with elevated privilege, read sandbox data of AR Emoji, bypass Knox Guard lock by altering system time, access arbitrary files, obtain sensitive information, execute arbitrary code, and compromise the targeted system, as indicated in the security note.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
RELIANCE JIO INFOCOMM LTD.
LAVA INTERNATIONAL LTD.
ZOHO CORPORATION PVT. LTD.
TP-LINK INDIA PVT. LTD.
Icons Of India : Arjun Malhotra
Arjun Malhotra, the Chairman of Magic Software Inc., is widely recogni...
ICONS OF INDIA : SANDIP PATEL
Sandip Patel is the Managing Director for IBM India & South Asia regio...
Icons Of India : MUKESH D. AMBANI
Mukesh Dhirubhai Ambani is an Indian businessman and the chairman and ...
ITI - ITI Limited
ITI Limited is a leading provider of telecommunications equipment, sol...
GSTN - Goods and Services Tax Network
GSTN provides shared IT infrastructure and service to both central and...
DRDO - Defence Research and Development Organisation
DRDO responsible for the development of technology for use by the mili...
Indian Tech Talent Excelling The Tech World - Sundar Pichai, CEO- Alphabet Inc.
Sundar Pichai, the CEO of Google and its parent company Alphabet Inc.,...
Indian Tech Talent Excelling The Tech World - Aneel Bhusri, CEO, Workday
Aneel Bhusri, Co-Founder and Executive Chair at Workday, has been a le...
Indian Tech Talent Excelling The Tech World - Steve Sanghi, Executive Chair, Microchip
Steve Sanghi, the Executive Chair of Microchip Technology, has been a ...