Indian govt issues high risk warning against Samsung phone users
By MYBRANDBOOK
The Computer Emergency Response Team of India (CERT-In), has issued a high-risk warning for Samsung mobile phone users regarding multiple vulnerabilities. The warning highlights critical security issues affecting Samsung Mobile Android versions 11, 12, 13, and 14. These vulnerabilities are rated HIGH due to their potential impact and ease of exploitation.
CERT-In researchers have reportedly identified multiple vulnerabilities in Samsung products that pose significant threats, and can potentially allow attackers to bypass security restrictions, access sensitive information, and execute arbitrary code on targeted systems. These vulnerabilities are diverse and impact various components of the Samsung ecosystem, as detailed in the CERT-In advisory.
According to CERT-In, the identified vulnerabilities in Samsung products stem from issues like -
● Improper access control in Knox features.
● Integer overflow flaw in facial recognition software.
● Authorisation issues with the AR Emoji app.
● Incorrect handling of errors in Knox security software.
● Multiple memory corruption vulnerabilities in various system components.
● Incorrect data size verification in the softsimd library.
● Unvalidated user input in the Smart Clip app.
● Hijacking of certain app interactions in contacts.
The effective exploitation of these vulnerabilities could result in serious repercussions. This may include scenarios where an attacker could initiate a heap overflow and stack-based buffer overflow, gain access to the device SIM PIN, send broadcasts with elevated privilege, read sandbox data of AR Emoji, bypass Knox Guard lock by altering system time, access arbitrary files, obtain sensitive information, execute arbitrary code, and compromise the targeted system, as indicated in the security note.
Legal Battle Over IT Act Intensifies Amid Musk’s India Plans
The outcome of the legal dispute between X Corp and the Indian government c...
Wipro inks 10-year deal with Phoenix Group's ReAssure UK worth
The agreement, executed through Wipro and its 100% subsidiary,...
Centre announces that DPDP Rules nearing Finalisation by April
The government seeks to refine the rules for robust data protection, ensuri...
Home Ministry cracks down on PoS agents in digital arrest scam
Digital arrest scams are a growing cybercrime where victims are coerced or ...
ICONS OF INDIA : RAJIV MEMANI
As Chair of the EY Global Emerging Markets Committee, Rajiv connects e...
ICONS OF INDIA : SOM SATSANGI
With more than three decades in the IT Sector, Som is responsible for ...
Icons Of India : Anil Agarwal
Anil Agarwal, the Founder and Chairman of Vedanta Resources Ltd., is r...
CERT-IN - Indian Computer Emergency Response Team
CERT-In is a national nodal agency for responding to computer security...
C-DOT - Center of Development of Telematics
India’s premier research and development center focused on telecommu...
RailTel Corporation of India Limited
RailTel is a leading telecommunications infrastructure provider in Ind...
Indian Tech Talent Excelling The Tech World - PADMASREE WARRIOR, Founder, President & CEO - Fable
Padmasree Warrior, the Founder, President, and CEO of Fable, is revolu...
Indian Tech Talent Excelling The Tech World - NIKESH ARORA, Chairman CEO - Palo Alto Networks
Nikesh Arora, the Chairman and CEO of Palo Alto Networks, is steering ...
Indian Tech Talent Excelling The Tech World - JAY CHAUDHRY, CEO – Zscaler
Jay Chaudhry, an Indian-American technology entrepreneur, is the CEO a...