← לוח פגיעויות

CVE-2021-25371

בינונית 6.7 מנוצלת בשטח (KEV)

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Samsung Mobile Devices Unspecified Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
Apply updates per vendor instructions or discontinue use of the product if updates are unavailable

תיאור (מקור, אנגלית)

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

מדדים

CVSS 3.1
6.7 (MEDIUM) מקור הציון: NVD CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-30/7/2026
CWE
CWE-912

מוצרים מושפעים

samsung: android; samsung: exynos 2100; samsung: exynos 980; samsung: exynos 9830

קישורים