Vulnerabilities > CVE-2025-20881 - Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
samsung
CWE-787

Summary

Out-of-bounds write in accessing buffer storing the decoded video frames in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

Vulnerable Configurations

Part Description Count
OS
Samsung
117

Common Weakness Enumeration (CWE)