Untrusted Pointer Dereference in Samsung Open Source mTower
CVE-2026-10420

5.5MEDIUM

Key Information:

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-10420?

A vulnerability exists in the Samsung Open Source mTower project, allowing for untrusted pointer dereferencing. This could lead to pointer manipulation, enabling attackers to exploit memory-related issues. Affected versions of mTower are those released prior to commit 102d3dc75cf8e58e68e4bea54ae3c803992c91be, highlighting the importance of applying patches or updates to secure your systems against potential exploits. The issue indicates that improper validation of input pointers could have significant implications for application integrity and security.

Affected Version(s)

mTower 0 < 102d3dc75cf8e58e68e4bea54ae3c803992c91be

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.