CNNVD-202508-530 Information

CNNVD ID

CNNVD-202508-530

CVE-2025-21021

  • CNNVD Published: 2025-08-06

Description (Chinese)

SAMSUNG Blockchain Keystore是韩国三星(SAMSUNG)公司的创建、存储、管理和备份私钥的系统工具。 SAMSUNG Blockchain Keystore 1.3.17.2之前版本存在安全漏洞,该漏洞源于绘制密码键盘时越界写入,可能导致本地特权攻击者越界写入内存。

Description (English)

SAMSUNG Blockchain Keystore is a system tool for the creation, storage, management and backup of private keys by the Korea Samsung Corporation. Prior to SAMSUNG Blockchain Keystore 1.3.17.2, there was a security loophole, which arose from cross-border writing when drawing a password keyboard, which could lead to local privileged assailants crossing the border to write in memory.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

三星

Published

2025-08-06

Last Modified

2026-02-24

References

https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=08

Patch

https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=08

Share on: