Executive brief
Samsung devices contain a ProxyHandler component that improperly checks permissions on proxy configuration settings. A local attacker with access to the device can read the proxy configuration without proper authorization, potentially exposing network routing details or credentials embedded in proxy settings.
Technical details
An improper authorization vulnerability exists in Samsung's ProxyHandler component affecting firmware versions prior to SMR (Samsung Mobile Release) Aug-2026 Release 1. The vulnerability allows a local attacker with device access to bypass authorization checks and read proxy configuration details. The attack requires local access to the affected device; network-based exploitation is not possible. An attacker can access sensitive proxy settings that may include network configuration or embedded credentials. The vulnerability is patched in Samsung's August 2026 mobile security release.
Affected products
- Samsung Mobile Firmware prior to SMR Aug-2026 Release 1
Timeline
- 2026-09-09: disclosed
- 2026-08: patched: SMR Aug-2026 Release 1