Improper input validation in Google Android - CVE-2024-43093
Published: November 4, 2024 / Updated: March 3, 2025
Vulnerability details
The vulnerability allows a local application to escalate privileges on the system.
The vulnerability exists due to improper input validation within the Framework Documents UI component. A local application can execute arbitrary code with elevated privileges.
Note, the vulnerability is being actively exploited in the wild.
Affected software
Samsung Mobile Firmware
How to mitigate CVE-2024-43093
Samsung Mobile Firmware - update to SMR-MAR-2025