Medium severity4.6NVD Advisory· Published May 7, 2025· Updated Jun 17, 2026
CVE-2025-20966
CVE-2025-20966
Description
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:samsung:gallery:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:samsung:gallery:*:*:*:*:*:*:*:*range: <14.5.10.3
- (no CPE)range: 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14
- Range: <14.5.10.3 (Global Android 13), <14.5.09.3 (China Android 13), <15.5.04.5 (Android 14)
Patches
Vulnerability mechanics
References
1- security.samsungmobile.com/serviceWeb.smsbnvdVendor Advisory
News mentions
0No linked articles in our index yet.