Samsung Notes Out-of-Bounds Write Vulnerability in BMP Image Parsing Allowing Arbitrary Code Execution

Vulnerability

A vulnerability exists in Samsung Notes versions prior to 4.4.26.71, where an out-of-bounds write occurs while parsing BMP images. This flaw enables local attackers to execute arbitrary code.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected device.

Remediation

Users can update to Samsung Notes version 4.4.26.71 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
10.0
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.