CVE-2024-34598General(samsung / good_lock)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch samsung good_lock systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper export of component in GoodLock prior to version 2.2.04.95 allows local attackers to install arbitrary applications from Galaxy Store.

0.5/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • good_lock

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
good_lock

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-24: 1Patch / Workaround · 2026-05-24: 1Technical Details · 2026-05-24: 105-24
Signal classification1 categories
General
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    General

    CVE-2024-34598 - Supply chain risk in Goodlock prior to 2.2.04.95. Local attackers can install arbitrary apps from Galaxy Store. CVSS 7.7. No patch available. Restrict access and monitor. #CVE #Samsung #infosec #CyberSecuiryt #CVEAlert #businessman More: https://www.valtersit.com/cve/CVE-2024-34598/

    Post summary

    CVE-2024-34598 reveals a supply‑chain weakness in Goodlock that permits local attackers to install arbitrary Galaxy Store apps. No patch is available, so limiting access and monitoring is advised.

    0000066
    904 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appsamsunggood_lock---

Explore more