Improper Input Validation in Samsung Mobile Product
CVE-2026-21066
5.1MEDIUM
What is CVE-2026-21066?
A vulnerability exists in Samsung Mobile products where improper input validation in the libcodec2_sec_flacdec.so component prior to the SMR August 2026 Release 1 allows local attackers to exploit this flaw, potentially leading to out-of-bounds memory write issues. This could enable unauthorized access or manipulation of sensitive data within affected systems.
Affected Version(s)
Samsung Mobile Devices SMR Aug-2026 Release in Android 14, 15, 16