Out-of-bounds Write Vulnerability in Samsung Mobile's libsthmbc.so
CVE-2025-20882
7.8HIGH
What is CVE-2025-20882?
The vulnerability exists due to an out-of-bounds write condition that exposes uninitialized memory in libsthmbc.so prior to the SMR Jan-2025 Release 1. Local attackers can exploit this flaw to execute arbitrary code, but it requires user interaction to trigger the vulnerability. This can lead to significant security risks if exploited, highlighting the importance of keeping software up-to-date.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Samsung Mobile Devices SMR Jan-2025 Release in Android 12, 13, 14
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved