CVE-2021-25496: Buffer Overflow
A possible buffer overflow vulnerability in maetddecslice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-25496.
What is the title of the vulnerability?
The title of the vulnerability is 'A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes.'
What is the description of the vulnerability?
The description of the vulnerability is 'A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.'
Which software versions are affected by this vulnerability?
Samsung Notes versions prior to 4.3.02.61 are affected by this vulnerability.
What is the severity of the vulnerability?
The severity of the vulnerability is high with a CVSS score of 7.8.
What is the Common Weakness Enumeration (CWE) associated with this vulnerability?
The Common Weakness Enumeration (CWE) associated with this vulnerability are CWE-119 and CWE-120.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following link: [CVE-2021-25496](https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=10).