Samsung Libsthmbc.so Out-of-Bounds Read Vulnerability Allowing Arbitrary Memory Read

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in the libsthmbc.so library, prior to the Samsung Security Maintenance Release (SMR) January 2025 Release 1. This vulnerability allows local attackers to read arbitrary memory by accessing a table used for svp8t. Exploitation of this issue requires user interaction.

Impact

Exploitation of this vulnerability could lead to unauthorized reading of memory, potentially allowing for information disclosure or further exploitation.

Remediation

Users can apply the January 2025 SMR Release 1 update to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
3.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.