First published: Thu Sep 09 2021(Updated: )
An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent denial of service on the device.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =10.0 | |
Google Android | =11.0 | |
Samsung Exynos 2100 | ||
Samsung Exynos 980 | ||
Samsung Exynos 9830 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25452 is an improper input validation vulnerability in loading a graph file in the DSP driver prior to SMR Sep-2021 Release 1.
CVE-2021-25452 affects Google Android versions 10.0 and 11.0, potentially allowing attackers to perform a permanent denial of service on the device.
CVE-2021-25452 has a severity rating of medium with a CVSS score of 5.5.
To fix CVE-2021-25452, it is recommended to install the SMR Sep-2021 Release 1 or later security update for the affected software.
You can find more information about CVE-2021-25452 at the following link: [https://security.samsungmobile.com/securityUpdate.smsb?year=2021&month=9](https://security.samsungmobile.com/securityUpdate.smsb?year=2021&month=9)