Android: SecTelephonyProvider Privilege Escalation via Improper Access Controls
CVE-2026-21017 Published on June 5, 2026
Improper handling of insufficient privileges in SecTelephonyProvider prior to SMR Jun-2026 Release 1 allows local attackers to access privileged files.
Products Associated with CVE-2026-21017
Want to know whenever a new CVE is published for Samsung Mobile Devices? stack.watch will email you.
Affected Versions
Samsung Mobile Devices:- Version SMR Jun-2026 Release in Android 14, 15, 16 and below * is unaffected.