Samsung's Latest Galaxy Store Update Fixes Vulnerability That Let Hackers Install Apps Without Informing Users

Samsung Galaxy store has been detected to have two vulnerabilities that let hackers install applications without informing users.

Advertisement
Written by Himani Jha, Edited by Manas Mitul | Updated: 23 January 2023 19:01 IST
Highlights
  • Samsung rolls out Galaxy Store app updated version 4.5.49.8
  • The Update is released for handsets running Android 12
  • Samsung handsets running Android 13 are not affected

The Galaxy Store vulnerabilities let hackers execute JavaScript on a target device

Photo Credit: Samsung

Samsung has released a Galaxy Store app update to fix vulnerabilities that could potentially allow malicious sources to install apps without a user's permission. Two vulnerabilities were reportedly detected on the Galaxy Store by a research team. These vulnerabilities have only been affecting handsets running Android 12 or lower. Android 13 users are not affected by this. Users can open the Galaxy Store on their phones, and download and install the latest Galaxy Store app version 4.5.49.8.

According to a report by NCC research team, the Galaxy Store app, which comes pre-installed on Galaxy smartphones, has been detected with two security vulnerabilities CVE-2023-21433 and CVE-2023-21434. The vulnerabilities allow hackers to install malicious apps on vulnerable Samsung handsets without the owner's permission as well as execute JavaScript by launching a Web page.

The report shares that a pre-installed rouge application or malicious hyperlink in Google Chrome on Galaxy phones running Android 12 bypass Samsung's URL filter and install any application available on the Galaxy Store. Further, they even launch a webview controlled by the attacker. Notably, these vulnerabilities have only been affecting Galaxy phones running Android 12, while Android 13 supported phones are safe.

Advertisement

Hence, to fix these bugs, Samsung has rolled out an updated version of the Galaxy Store app (version 4.5.49.8). Users can head to the Galaxy Store settings on their phones, and download and install the latest version of the app. Samsung has rated the abovementioned vulnerabilities as Moderate risks.

Advertisement

The Galaxy Store was reported to distribute malicious apps asking for excessive permissions, including access to the phone, earlier as well. In December 2021, different Showbox movie piracy app clones available on Galaxy Store were spotted infecting devices with malware. Tipster Max Weinbach reported a similar type of issue that was previously discovered on Huawei phones. He shared that the Showbox-based app installations from the Galaxy store were stopped by Google's Play Protect warning. At least five of the Showbox-based apps were infected with dangerous malware. 

 


The iQoo 11 is currently the most powerful Android phone you can buy in India. Should you buy it right away? We discuss this and more on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Patang Now Streaming on Prime Video: Everything You Need to Know About Plot, Cast, and Mor
  2. Vivo V70, V70 Elite Confirmed to Launch in India Soon With These Chips
  3. Apple Confirms It Will Open Its Second Store in Mumbai 'Soon'
  4. Oppo Find X9s, Find X9 Ultra Could Be Launched Soon in These Colourways
  5. Motorola Signature Goes on Sale for the First Time With These Offers
  6. Dhurandhar Now Streaming on Netflix: What You Need to Know
  7. iQOO 15 Ultra Spied in Leaked Hands-On Video; Display Details Confirmed
  8. Noise Master Buds 2 to Offer ANC Improvements With New Earbud Design
  9. OTT Releases This Week: Dhurandhar, Daldal, Gustaakh Ishq, Sarvam Maya, and More
  10. Realme 16 5G With 7,000mAh Battery Goes Official: See Features
  1. 45 Now Streaming Online: Where to Watch This Kannada Fantasy Thriller Online?
  2. Apple to Prioritize Premium iPhone Launches in 2026 Amid Memory Crunch: Report
  3. CERT-In Asks macOS, Google Chrome Users to Install Updates That Address Security Flaws, Data Theft Risks
  4. Oppo Reno 16 Series Early Leak Hints at Launch Timeline, Dimensity 8500 Chipset and Other Key Features
  5. Patang Now Streaming on Prime Video: Everything You Need to Know About Plot, Cast, and More
  6. Xiaomi Pad 8 Pro Global Variant Visits Geekbench; Tipped to Launch Alongside Xiaomi 17 Series
  7. Google Maps Is Adding Gemini Support for Walking and Cycling Navigation
  8. Gandhi Talks OTT Release Details: Everything You Need to Know About Vijay Sethupathi and Arvind Swami’s Silent Film
  9. OpenAI to Retire GPT-4o and Other Legacy AI Models in ChatGPT in February
  10. NASA, SpaceX Move Up Crew-12 Launch After ISS Medical Emergency
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.