First published: Tue Feb 04 2025(Updated: )
Out-of-bounds write in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to write out-of-bounds memory.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Blockchain Keystore | <1.3.16.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-20900 has a high severity rating due to its potential to allow local privileged attackers to exploit an out-of-bounds write vulnerability.
To fix CVE-2025-20900, upgrade to Blockchain Keystore version 1.3.16.5 or later.
CVE-2025-20900 affects users of Blockchain Keystore prior to version 1.3.16.5.
CVE-2025-20900 can be exploited by local privileged attackers to write out-of-bounds memory and potentially compromise system security.
No, CVE-2025-20900 requires local access to the device to exploit the vulnerability.