Out-of-Bounds Read Vulnerability in Samsung Notes by Samsung
CVE-2025-21067

4MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
10 October 2025

What is CVE-2025-21067?

A vulnerability exists in Samsung Notes that allows local attackers to exploit an out-of-bounds read scenario related to image buffer allocation, potentially granting them access to sensitive memory areas that should not be accessible. This issue affects versions of Samsung Notes released before 4.4.30.63, and highlights the necessity for users to update their applications to safeguard against unauthorized data exposure.

Affected Version(s)

Samsung Notes 4.4.30.63

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-21067 : Out-of-Bounds Read Vulnerability in Samsung Notes by Samsung