First published: Thu May 04 2023(Updated: )
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Blockchain Wallet | <1.3.12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-21509 is classified as a high-severity vulnerability that allows local attackers to execute arbitrary code.
To fix CVE-2023-21509, update the Samsung Blockchain Keystore to version 1.3.12.1 or later.
CVE-2023-21509 affects users of the Samsung Blockchain Keystore prior to version 1.3.12.1.
CVE-2023-21509 enables local attackers to perform arbitrary code execution through an out-of-bounds write.
CVE-2023-21509 is specific to devices using the vulnerable version of Samsung Blockchain Keystore software.