CVE-2023-21442: Samsung Android
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper access control vulnerability in Runestone application prior to version 2.9.09.003 in Android R(11) and 3.2.01.007 in Android S(12) allows local attackers to get device location information.
Affected products
- Samsung Android: version 11.0 only; version 12.0 only
Published 2023-02-09. Last modified 2026-06-17.