CVE-2026-10420: Medium severity Samsung mTower vulnerability
Published Sep 1, 2026
·Updated
Untrusted pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation.
This issue affects mTower: before 102d3dc75cf8e58e68e4bea54ae3c803992c91be.
Affected Software
1 affected component
Samsung mTower<102d3dc75cf8e58e68e4bea54ae3c803992c91be
Event History
Sep 1, 2026
CVE Published
via MITRE·11:08 AM
Data Sourced
via MITRE·11:08 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access and user interaction are required for exploitation?
The CVSS vector indicates local access is required and no privileges are needed. Exploitation also requires user interaction.
2
What is the likely impact if exploitation succeeds?
The reported impact is high availability impact, meaning exploitation can cause a denial of service. No confidentiality or integrity impact is indicated.
3
How can I determine whether my mTower version is affected?
mTower versions before commit 102d3dc75cf8e58e68e4bea54ae3c803992c91be are affected. Compare your deployed source revision with that commit.