CVE-2021-25371: Samsung Mobile Devices Unspecified Vulnerability

Published Mar 26, 2021
·
Updated

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

Other sources

Samsung mobile devices contain an unspecified vulnerability within DSP driver that allows attackers to load ELF libraries inside DSP.

CISA

Affected Software

13 affected components
Samsung Mobile Devices
Google Android=10.0
Google Android=11.0
Samsung Exynos 2100
Samsung Exynos 980
Samsung Exynos 9830
All of the following
Any of the following
Samsung android=10.0-smr-feb-2021-r1
Samsung android=10.0-smr-jan-2021-r1
Samsung android=11.0-smr-feb-2021-r1
Samsung android=11.0-smr-jan-2021-r1
Any of the following
Samsung Exynos 2100
Samsung Exynos 980
Samsung Exynos 9830

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Samsung mobile devices (DSP driver) to a version that resolves this vulnerability.

    Fixed in SMR Mar-2021 Release 1
  2. Compensating control

    Discontinue use of the product if updates are unavailable.

Event History

Mar 26, 2021
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 29, 2023
Known Exploited
via CISA·12:00 AM
Oct 14, 58448
Event
07:23 PM

Frequently Asked Questions

1

What is CVE-2021-25371?

CVE-2021-25371 is an unspecified vulnerability in the DSP driver of Samsung mobile devices.

2

How does CVE-2021-25371 affect Samsung mobile devices?

CVE-2021-25371 allows attackers to load ELF libraries inside the DSP of Samsung mobile devices.

3

What is the severity of CVE-2021-25371?

The severity of CVE-2021-25371 has not been specified.

4

Is there a fix for CVE-2021-25371?

Samsung has not provided a specific fix for CVE-2021-25371.

5

Where can I find more information about CVE-2021-25371?

You can find more information about CVE-2021-25371 on the Samsung Mobile Security website.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203