Samsung Blockchain Keystore Out-of-Bounds Write Vulnerability

Vulnerability

A high-severity out-of-bounds write vulnerability has been identified in the Blockchain Keystore application, prior to version 1.3.17.2. This vulnerability allows local privileged attackers to write to out-of-bounds memory by exploiting improper input validation when creating bitmap images. The issue has been addressed in version 1.3.17.2.

Impact

Exploitation of this vulnerability allows for out-of-bounds memory writes, which can lead to memory corruption and potentially allow for arbitrary code execution.

Remediation

Users can update to Blockchain Keystore version 1.3.17.2 to address this vulnerability.

Added: Aug 6, 2025, 5:39 AM
Updated: Aug 6, 2025, 5:39 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
2.8
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.