Description

Improper access control in SLocation prior to SMR Jan-2026 Release 1 allows local attackers to execute the privileged APIs.

INFO

Published Date :

2026-01-09T06:16:03.983Z

Last Modified :

2026-01-10T04:55:49.126Z

Source :

SamsungMobile
AFFECTED PRODUCTS

The following products are affected by CVE-2026-20970 vulnerability.

Vendors Products
Samsung
  • Mobile
  • Mobile Devices
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-20970.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability