Samsung Mobile Out-of-Bounds Read Vulnerability in libsavsac.so

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in the audio data parsing of libsavsac.so, in versions prior to SMR April 2025 Release 1. This flaw allows local attackers to read memory outside of the intended bounds.

Impact

Exploitation of this vulnerability could lead to unauthorized access to out-of-bounds memory, potentially allowing for information disclosure or memory corruption.

Remediation

Users can apply the Samsung Security Maintenance Release (SMR) for April 2025 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.