CVE-2021-25487
Samsung Mobile Devices Out-of-Bounds Read Vulnerability
⚠ KEVEPSS 0.60%
Description
Samsung mobile devices contain an out-of-bounds read vulnerability within the modem interface driver due to a lack of boundary checking of a buffer in set_skb_priv(), leading to remote code execution by dereference of an invalid function pointer.
How to fix CVE-2021-25487
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2021-25487 being exploited?
Yes — CVE-2021-25487 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.