Impact
Improper input validation in the VC1 codec library (libsavsvc.so) allows a local attacker to overwrite memory beyond the bounds of a buffer. The overwrite can corrupt data structures in the codec process, potentially enabling privilege escalation or causing a denial of service. The weakness is a classic bounds‑checking failure, corresponding to CWE‑119. The impact is therefore memory corruption confined to the process that decodes VC1 streams, but with the possibility of escalating privileges if the codec runs with higher privileges.
Affected Systems
The flaw exists in Samsung Mobile Devices that run firmware versions older than the SMR Aug‑2026 Release 1 update. Any device whose media framework bundles the vulnerable libsavsvc.so library is affected.
Risk and Exploitability
The CVSS score of 5.1 characterizes the vulnerability as moderate. No EPSS data is available, and it is not listed in the CISA KEV catalog. Because an attacker must be able to locally feed a crafted VC1 stream to the device, exploitation requires physical or otherwise local access to the device. If achieved, the out‑of‑bounds write could destabilize the codec process or allow privilege escalation, but remote exploitation is not supported by the current data.
OpenCVE Enrichment