CVE-2023-21441: Samsung Android

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.

Affected products

  • Samsung Android: version 10.0 only; version 11.0 only; version 12.0 only

Published 2023-02-09. Last modified 2026-06-17.