Samsung Notes Out-of-Bounds Read Vulnerability Allowing Memory Access

Vulnerability

A moderate out-of-bounds read vulnerability has been identified in Samsung Notes applications prior to version 4.4.26.71. This vulnerability allows attackers to read out-of-bounds memory by exploiting the application of binary PDF content. The issue arises from improper input validation when handling certain types of content, including drawings, handwriting, voice data, SPen strings, video, text, and image data, as well as action link data and text paragraphs.

Impact

Exploitation of this vulnerability could lead to unauthorized access to out-of-bounds memory, potentially allowing for further exploitation or information leakage.

Remediation

Users can update to Samsung Notes version 4.4.26.71 to address this vulnerability. The patch includes proper input validation to prevent out-of-bounds memory access.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.