QID 610494

Date Published: 2023-07-06

QID 610494: Google Android July 2023 Security Patch Missing for Samsung

Android is a mobile operating system based on a modified version of the Linux kernel and other open source software, designed primarily for touchscreen mobile devices such as smartphones and tablets.

Following security issues were discovered:
CVE-2022-40529, CVE-2022-33257, CVE-2023-21250,CVE-2022-22706, CVE-2022-46781, CVE-2022-28349, CVE-2021-0701, CVE-2021-0945, CVE-2022-40533, CVE-2023-21657, CVE-2022-40520, CVE-2022-40516, CVE-2022-40517, CVE-2022-33251, CVE-2022-33264, CVE-2022-40538, CVE-2022-40536, CVE-2022-22060, CVE-2022-40521, CVE-2023-21628, CVE-2023-21658, CVE-2023-21659, CVE-2023-21661, CVE-2023-21656, CVE-2022-48391, CVE-2022-48392, CVE-2022-48390, CVE-2022-48438, CVE-2023-21120, CVE-2023-21101, CVE-2023-21670, CVE-2023-20918, CVE-2023-21145, CVE-2023-21245, CVE-2023-21251, CVE-2023-21254, CVE-2023-21257, CVE-2023-21262, CVE-2023-21238, CVE-2023-21239, CVE-2023-21249, CVE-2023-21087, CVE-2023-2136, CVE-2023-21241, CVE-2023-21246, CVE-2023-21247, CVE-2023-21248, CVE-2023-21256, CVE-2023-21261, CVE-2023-20910, CVE-2023-21240, CVE-2023-21243

Affected Products :
Galaxy Z Fold2, Galaxy Z Fold2 5G, Galaxy Z Fold3 5G, Galaxy Z Fold4, Galaxy Z Flip 5G, Galaxy Z Flip3 5G, Galaxy Z Flip4, W23, W23 flip Galaxy S20, Galaxy S20 5G, Galaxy S20+, Galaxy S20+ 5G, Galaxy S20 Ultra, Galaxy S20 Ultra 5G, Galaxy S20 FE, Galaxy S20 FE 5G, Galaxy S21 5G, Galaxy S21+ 5G, Galaxy S21 Ultra 5G, Galaxy S21 FE 5G, Galaxy S22, Galaxy S22+, Galaxy S22 Ultra, Galaxy S23, Galaxy S23+, Galaxy S23 Ultra Galaxy Note20, Galaxy Note20 5G, Galaxy Note20 Ultra, Galaxy Note20 Ultra 5G Enterprise Models: Galaxy A52, Galaxy A52 5G, Galaxy A52s 5G, Galaxy A53 5G, Galaxy A54 5G, Galaxy Xcover5, Galaxy Xcover6 Pro

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Refer to Samsung Security advisory SMR-July-2023 to address this issue and obtain more information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    SMR-July-2023 Android URL Logo security.samsungmobile.com/securityUpdate.smsb