Android
cpe:2.3:o:samsung:android:*:*:*:*:*:*:*
- ~13
- ~14
- ~15
- ~16
A vulnerability allowing out-of-bounds memory writes has been identified in the libsec-ril.so library, affecting several versions of Android on Samsung devices. This issue arises from improper input validation, which local privileged attackers could exploit. The vulnerability is present in multiple Android versions, including 13, 14, 15, and 16.
Exploitation of this vulnerability allows for out-of-bounds memory writes, which can lead to memory corruption and potentially allow for arbitrary code execution.
Users can apply the December 2025 Security Maintenance Release (SMR) to address this vulnerability. This update is part of the regular monthly security update process and includes patches from both Google and Samsung.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.