Description
Insecure default configuration in USB connection mode prior to SMR Nov-2025 Release 1 allows privileged physical attackers to access user data. User interaction is required for triggering this vulnerability.
Problem types
CWE-1188: Initialization of a Resource with an Insecure Default
Product status
SMR Nov-2025 Release in Android 13, 14, 15, 16
References
security.samsungmobile.com/...Update.smsb?year=2025&month=11