Medium severity5.5NVD Advisory· Published Jul 21, 2025· Updated Jun 17, 2026
CVE-2025-43977
CVE-2025-43977
Description
The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.skt.prod.dialer.activities.outgoingcall.OutgoingCallInternalBroadcaster component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:sktelecom:com.skt.prod.dialer:12.5.0:*:*:*:*:android:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=12.5.0
Patches
Vulnerability mechanics
References
2- github.com/actuator/com.skt.prod.dialer/blob/main/CVE-2025-43977nvdThird Party Advisory
- play.google.com/store/apps/detailsnvdProduct
News mentions
0No linked articles in our index yet.