← לוח פגיעויות

CVE-2021-25370

בינונית 4.4 מנוצלת בשטח (KEV)

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Samsung Mobile Devices Memory Corruption Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
Apply updates per vendor instructions.

תיאור (מקור, אנגלית)

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

מדדים

CVSS 3.1
4.4 (MEDIUM) מקור הציון: NVD CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-30/7/2026
CWE
CWE-416, CWE-703

מוצרים מושפעים

samsung: android

קישורים