Buffer Overflow Vulnerability in PROCA Trustlet from Samsung
CVE-2026-21093

5.6MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
9 September 2026

What is CVE-2026-21093?

A stack-based buffer overflow vulnerability exists in the PROCA trustlet, which allows local privileged attackers to manipulate memory beyond intended boundaries. This exploit can potentially lead to unauthorized access and modification of sensitive information, posing significant security risks. It is imperative for users and administrators to ensure that devices are updated to the latest SMR release to mitigate such vulnerabilities.

Affected Version(s)

Samsung Mobile Devices SMR Sep-2026 Release in Android 14, 15, 16, 17

References

CVSS V4

Score:
5.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.