First published: Wed Dec 08 2021(Updated: )
An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | =9.0 | |
Android | =10.0 | |
Android | =11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25518 is classified as having high severity due to its potential for arbitrary memory write and code execution.
To fix CVE-2021-25518, update your affected Android device to the latest security patch provided by Google.
CVE-2021-25518 affects Android versions 9.0, 10.0, and 11.0.
The risks of CVE-2021-25518 include unauthorized code execution and potential compromise of device security.
As of the latest information, there are no confirmed reports of active exploitation of CVE-2021-25518, but users are advised to update their systems promptly.