Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2021-25487

Samsung | Mobile DevicesAdded 2023-06-29Remediation Deadline 2023-07-20

Samsung Mobile Devices Out-of-Bounds Read Vulnerability

Samsung mobile devices contain an out-of-bounds read vulnerability within the modem interface driver due to a lack of boundary checking of a buffer in set_skb_priv(), leading to remote code execution by dereference of an invalid function pointer.

Required Action

Apply updates per vendor instructions or discontinue use of the product if updates are unavailable

Weakness Classification

CWE-125

References