CVE-2021-25369
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
26/03/2021
Last modified:
30/10/2025
Description
An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
Impact
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:samsung:android:8.0:-:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:8.1:-:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-apr-2019-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-apr-2020-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-aug-2019-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-aug-2020-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-dec-2018-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-dec-2019-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-dec-2020-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-feb-2019-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-feb-2020-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-feb-2021-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-jan-2019-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-jan-2020-r1:*:*:*:*:*:* | ||
| cpe:2.3:o:samsung:android:9.0:smr-jan-2021-r1:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



