Improper Input Validation in MPEG4 Codec of Samsung Products
CVE-2026-21071
5.1MEDIUM
What is CVE-2026-21071?
A flaw has been identified in the MPEG4 codec of Samsung's libsavsvc.so that allows for improper input validation. This vulnerability enables local attackers to manipulate memory, potentially leading to out-of-bounds writes. Affected users are urged to update their systems to the latest release to mitigate the risk associated with this vulnerability.
Affected Version(s)
Samsung Mobile Devices SMR Aug-2026 Release in Android 14, 15, 16