CVE-2025-21008: Medium severity Android libsavsvc vulnerability
Published Jul 8, 2025
·Updated
Out-of-bounds read in decoding frame header in libsavsvc.so prior to Android 15 allows local attackers to cause memory corruption.
Affected Software
2 affected components
Android libsavsvc<15
Samsung android<15.0
Event History
Jul 8, 2025
CVE Published
via MITRE·10:34 AM
Data Sourced
via MITRE·10:34 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-21008?
CVE-2025-21008 is classified as a high severity vulnerability due to its potential to allow local attackers to cause memory corruption.
2
How do I fix CVE-2025-21008?
The recommended fix for CVE-2025-21008 is to update to Android version 15 or later where the vulnerability is resolved.
3
Who is affected by CVE-2025-21008?
CVE-2025-21008 affects devices using libsavsvc.so on Android versions prior to 15.
4
What type of vulnerability is CVE-2025-21008?
CVE-2025-21008 is an out-of-bounds read vulnerability which can lead to memory corruption.
5
What can attackers potentially do with CVE-2025-21008?
Attackers exploiting CVE-2025-21008 could lead to unstable applications and potentially allow malicious actions on the affected device.