First published: Tue Feb 04 2025(Updated: )
Out-of-bounds read in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to read out-of-bounds memory.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Blockchain Keystore | <1.3.16.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-20901 is considered a high severity vulnerability due to its potential impact from local privileged attackers.
To remediate CVE-2025-20901, upgrade Blockchain Keystore to version 1.3.16.5 or later.
Users of Blockchain Keystore prior to version 1.3.16.5 are affected by CVE-2025-20901.
CVE-2025-20901 is an out-of-bounds read vulnerability.
CVE-2025-20901 requires local access, so it cannot be exploited remotely.