CVE-2022-28789

MEDIUM

Voice Note <21.3.51.11 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interaction. The patch adds proper permission for vulnerable activities.

References (1)

Core 1
Core References

Scores

CVSS v3 6.2
EPSS 0.0006
EPSS Percentile 17.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-862
Status published
Products (1)
samsung/voice_note < 21.3.51.11
Published May 03, 2022
Tracked Since Feb 18, 2026