CVE-2025-20931: High severity Samsung Samsung Notes vulnerability
Published Mar 6, 2025
·Updated
Out-of-bounds write in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.
Affected Software
2 affected components
Samsung Samsung Notes<4.4.26.71
Samsung Notes<4.4.26.71
Event History
Mar 6, 2025
CVE Published
via MITRE·05:04 AM
Data Sourced
via MITRE·05:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Jul 11, 57510
Event
via NVD·04:43 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-20931?
CVE-2025-20931 has a high severity due to its potential for allowing local attackers to execute arbitrary code.
2
How do I fix CVE-2025-20931?
To fix CVE-2025-20931, update Samsung Notes to version 4.4.26.71 or later.
3
What versions of Samsung Notes are affected by CVE-2025-20931?
CVE-2025-20931 affects Samsung Notes versions prior to 4.4.26.71.
4
Can CVE-2025-20931 be exploited remotely?
CVE-2025-20931 can only be exploited by local attackers, as it requires access to the device.
5
What types of attacks can CVE-2025-20931 facilitate?
CVE-2025-20931 can facilitate arbitrary code execution attacks on affected devices.