Impact
The firmware contains a flaw in the VC1 codec library where numeric type conversion is performed incorrectly, allowing an attacker to write beyond the intended memory bounds. This out‑of‑bounds write can corrupt data structures and lead to arbitrary code execution on the device. The deficiency is a classic example of improper control of memory bounds, which can compromise the confidentiality, integrity, or availability of the system if exploited. The vulnerability is described as a local attack scenario where a user with access to the device can trigger the flaw via malformed VC1 data processed by the library.
Affected Systems
This issue affects Samsung Mobile Devices that are running firmware versions prior to the SMR Aug-2026 Release 1. All devices that have not yet upgraded to the stated firmware release are potentially vulnerable and may be susceptible to local exploitation.
Risk and Exploitability
The CVSS score of 5.1 indicates a medium severity. Even though EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, an attacker with local privileges can exploit the flaw. The attack vector requires the user to supply or cause the device to process malicious VC1 data. Once the buffer overflow occurs, the attacker can hijack execution flow or modify critical data structures, granting local code execution. In environments where device firmware is frequently updated, the risk is mitigated once the patch is applied.
OpenCVE Enrichment