Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
oryginał ENCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HSamsung Android
OSSamsung13.014.015.016.0
CISA KEV — szczegółyi
- Dostawcai
- Samsung
- Produkti
- Mobile Devices
- Data dodania do KEVi
- 2 października 2025
- Termin remediation (USA)i
- 23 października 2025(po terminie)
Zastosuj mitygacje zgodnie z instrukcjami dostawcy, przestrzegaj odpowiedniego wskazówek BOD 22-01 dla usług chmurowych lub zaprzestań używania produktu, jeśli mitygacje są niedostępne.
▸ Pokaż oryginał (EN)
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Urządzenia mobilne Samsung zawierają lukę typu out-of-bounds write w libimagecodec.quram.so, która pozwala zdalnym atakującym na wykonanie dowolnego kodu.
▸ Pokaż oryginał (EN)
Samsung mobile devices contain an out-of-bounds write vulnerability in libimagecodec.quram.so which allows remote attackers to execute arbitrary code.
Powiązane podatności
Path Traversal w Samsung Galaxy Themes Service — dostęp do plików systemowych
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execu...
Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Releas...
Improper access control in Weaver prior to SMR Aug-2026 Release 1 allows local attackers to cause device inope...
Stack-based buffer overflow in libril_sem.so prior to SMR Aug-2026 Release 1 allows privileged local attackers...