CVE-2024-20854: Samsung Camera
Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.
Improper handling of insufficient privileges vulnerability in Samsung Camera prior to versions 12.1.0.31 in Android 12, 13.1.02.07 in Android 13, and 14.0.01.06 in Android 14 allows local attackers to access image data.
Affected products
- Samsung Camera: before 12.1.0.31 (fixed in 12.1.0.31); before 13.1.02.07 (fixed in 13.1.02.07); before 14.0.01.06 (fixed in 14.0.01.06)
Published 2024-04-02. Last modified 2026-06-17.