CVE-2025-20982: Medium severity Samsung android vulnerability
Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20982?
CVE-2025-20982 is classified as a high severity vulnerability due to its potential impact on device security.
How do I fix CVE-2025-20982?
To fix CVE-2025-20982, users should update their Samsung devices to the latest firmware that addresses this vulnerability.
What causes CVE-2025-20982?
CVE-2025-20982 is caused by an out-of-bounds write in the KnoxVault trustlet during the authentication secret setting.
Who is affected by CVE-2025-20982?
CVE-2025-20982 affects Samsung devices running specific versions of Android 14.0, especially those prior to the SMR July-2025 Release 1.
Can CVE-2025-20982 be exploited remotely?
CVE-2025-20982 cannot be exploited remotely as it requires local privileged access to the affected device.