Description
Out-of-bounds write in libmdnie.so prior to SMR Sep-2026 Release 1 allows local attackers to execute arbitrary code with system server privilege.
Published: 2026-09-09
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation to System Server
Action: Immediate Patch
AI Analysis

Impact

An out‑of‑bounds write flaw (CWE-787) exists in libmdnie.so, enabling a local attacker to execute arbitrary code with system server privilege. This vulnerability would allow the attacker to take full control of critical system services and compromise device integrity. The issue is a classic buffer overflow that can corrupt memory locations not intended by the application.

Affected Systems

Samsung Mobile Devices running a to the SMR Sep‑2026 Release 1 are impacted. No specific version numbers are provided beyond the requirement that the library predates the September 2026 release.

Risk and Exploitability

The CVSS score of 8.6 indicates high severity. EPSS score of 0.00121 indicates a very low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog, suggesting no widely known exploits yet. The likely attack vector is local: an attacker must already have access to the device, but once the flaw is triggered they gain full system server privileges, making this a critical risk for any compromised or misused device.

Generated by OpenCVE AI on September 10, 2026 at 23:57 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Samsung security update that contains the libmdnie.so patch from the SMR Sep‑2026 Release 1 or later.
  • If an update is not yet available, restrict local access to the device and disable or block services that load libmdnie.so until a patch is applied.
  • Continuously monitor device logs for abnormal write operations to shared memory or suspicious execution behavior.

Generated by OpenCVE AI on September 10, 2026 at 23:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 11 Sep 2026 00:30:00 +0000

Type Values Removed Values Added
First Time appeared Samsung Mobile
Samsung Mobile samsung Mobile Devices
Vendors & Products Samsung Mobile
Samsung Mobile samsung Mobile Devices

Fri, 11 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in libmdnie Allows Local Privilege Escalation on Samsung Devices

Thu, 10 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in libmdnie Allows Local Privilege Escalation on Samsung Devices

Thu, 10 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung android
CPEs cpe:2.3:o:samsung:android:15.0:-:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-apr-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-apr-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-aug-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-aug-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-dec-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-feb-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-feb-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jan-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jan-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jul-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jul-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jun-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-jun-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-mar-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-mar-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-may-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-may-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-nov-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-oct-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:15.0:smr-sep-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:-:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-apr-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-aug-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-aug-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-dec-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-feb-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-jan-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-jul-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-jun-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-mar-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-may-2026-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-nov-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-oct-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:16.0:smr-sep-2025-r1:*:*:*:*:*:*
cpe:2.3:o:samsung:android:17.0:-:*:*:*:*:*:*
Vendors & Products Samsung
Samsung android
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Thu, 10 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in libmdnie.so Allows Local Attackers to Execute Arbitrary Code with System Server Privilege
Weaknesses CWE-120

Thu, 10 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 09 Sep 2026 11:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in libmdnie.so Allows Local Attackers to Execute Arbitrary Code with System Server Privilege
Weaknesses CWE-120

Wed, 09 Sep 2026 05:00:00 +0000

Type Values Removed Values Added
Description Out-of-bounds write in libmdnie.so prior to SMR Sep-2026 Release 1 allows local attackers to execute arbitrary code with system server privilege.
References
Metrics cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Samsung Android
Samsung Mobile Samsung Mobile Devices
cve-icon MITRE

Status: PUBLISHED

Assigner: SamsungMobile

Published:

Updated: 2026-09-11T03:56:40.360Z

Reserved: 2025-12-11T01:33:35.826Z

Link: CVE-2026-21087

cve-icon Vulnrichment

Updated: 2026-09-10T14:51:04.645Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-09T05:17:20.707

Modified: 2026-09-11T04:17:36.230

Link: CVE-2026-21087

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-11T00:15:16Z

Weaknesses