Heap Out-of-Bounds Write Vulnerability in Samsung Bootloader
CVE-2023-21489
7.1HIGH
What is CVE-2023-21489?
A heap out-of-bounds write vulnerability exists in the Samsung bootloader prior to the Security Maintenance Release (SMR) May 2023 Release 1. This flaw allows a physical attacker to exploit the system, potentially leading to the execution of arbitrary code on affected devices. The vulnerability undermines the security of the boot process, emphasizing the importance of keeping firmware up to date to mitigate security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Samsung Mobile Devices Selected Android 11, 12, 13 Qualcomm devices
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved