Samsung Mobile vendor intelligence

Samsung Mobile Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Samsung Mobile products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
13
Known exploited vulnerabilities affecting Samsung Mobile products
In CISA KEV
13
Records also listed in the official catalog
Beyond CISA KEV
0
Additional exploited CVEs absent from CISA KEV
Sensor Observed
0
Samsung Mobile KEVs with sensor-observed exploitation activity

The catalog gap matters for Samsung Mobile exposure

All thirteen exploited Samsung Mobile CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.

100%
Covered by CISA
0%
Beyond CISA
1
Product families

Attested Samsung Mobile CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2025-21042

Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.

Samsung Mobile Devices Confirmed In CISA 01 Jun 2026
CVE-2025-21043

Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.

Samsung Mobile Devices Confirmed In CISA 01 Jun 2026
CVE-2021-25370

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel...

Samsung Mobile Devices Confirmed In CISA 08 Nov 2022
CVE-2021-25369

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

Samsung Mobile Devices Confirmed In CISA 08 Nov 2022
CVE-2021-25337

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or...

Samsung Mobile Devices Confirmed In CISA 08 Nov 2022
CVE-2023-21492

Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.

Samsung Mobile Devices Confirmed In CISA 19 May 2023
CVE-2021-25372

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2021-25371

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2021-25395

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is...

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2021-25394

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio...

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2021-25489

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string...

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2021-25487

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in...

Samsung Mobile Devices Confirmed In CISA 29 Jun 2023
CVE-2022-22265

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code...

Samsung Mobile Devices Confirmed In CISA 18 Sep 2023

Showing 13 of 13 Samsung Mobile known exploited vulnerabilities.

Recurring weakness patterns

Check or handling, out-of-bounds write, and exposure account for six mapped occurrences across this Samsung Mobile KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.