Stack-based buffer overflow in libril_sem.so prior to SMR Aug-2026 Release 1 allows privileged local attackers to execute arbitrary code.
oryginał ENCVSS Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XSamsung Android
OSSamsung14.015.016.0
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
RCEMemory
CWE
Powiązane podatności
CVE-2023-21456CRITICAL9.0PL ✓ten sam produkt
Path Traversal w Samsung Galaxy Themes Service — dostęp do plików systemowych
CVE-2025-21043HIGH8.8⚠ KEVten sam produkt
Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execu...
CVE-2025-21042HIGH8.8⚠ KEVten sam produkt
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execu...
CVE-2021-25487HIGH7.3⚠ KEVten sam produkt
Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Releas...
CVE-2026-21064HIGH7.0ten sam produkt
Improper access control in Weaver prior to SMR Aug-2026 Release 1 allows local attackers to cause device inope...