First published: Thu Mar 04 2021(Updated: )
Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corrupt EL2 memory.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =10.0 | |
Google Android | =11.0 | |
Samsung Exynos 9830 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25339 is a vulnerability that allows an attacker, given a compromised kernel, to corrupt EL2 memory on Samsung mobile devices prior to SMR Mar-2021 Release 1.
CVE-2021-25339 impacts Samsung mobile devices running Android 10.0 and 11.0, allowing an attacker to corrupt EL2 memory.
The severity of CVE-2021-25339 is medium with a severity score of 5.2.
To check if your Samsung mobile device is affected by CVE-2021-25339, refer to the SMR Mar-2021 Release 1 from Samsung.
To fix CVE-2021-25339, update your Samsung mobile device to SMR Mar-2021 Release 1 or a later version provided by Samsung.