FAIL › dossier
Samsung
VENDOR· dossier confidence 60%
Samsung, a global electronics leader, has a history of significant security vulnerabilities in its mobile devices and server software, including remote code execution and path traversal flaws. Recent incidents impacting MagicINFO and mobile device components highlight ongoing security challenges.
PROFILE
CategoryElectronicsWhat they doSamsung Electronics engages in the consumer electronics, information technology, and mobile communications businesses worldwide. The company operates through four divisions: Device eXperience (DX), Device Solutions (DS), SDC, and Harman.HQSouth KoreaOwnershippublic
Websitehttps://stockanalysis.com/quote/krx/005930/company/ ↗
SECURITY POSTURE
Samsung has a history of high-severity vulnerabilities in its mobile devices, often related to memory corruption and remote code execution. These vulnerabilities frequently impact a wide range of devices and software versions.
Notable failures
- CVE-2025-21042 (RCE) - libimagecodec.quram.so out-of-bounds write
- CVE-2022-22265 (RCE) - Exynos chipset use-after-free
- CVE-2021-25487 (RCE) - Modem interface driver out-of-bounds read
- CVE-2025-4632 - MagicINFO 9 Server path traversal
- CVE-2021-25394/25395 (RCE) - MFC charger driver race condition/use-after-free
- CVE-2024-7399 - MagicINFO 9 Server path traversal
Patterns: Recurring RCE vulnerabilities in mobile devices; Vulnerabilities in modem interface drivers; Memory corruption issues (use-after-free); Path traversal vulnerabilities in MagicINFO server
FAILURE HISTORY · 18
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2025-11-10 | CVE-2025-21042 | high | Samsung mobile devices had an unpatched out-of-bounds write vulnerability allowing remote code execution. |
| 2025-10-02 | CVE-2025-21043 | high | Samsung mobile devices vulnerable to remote code execution due to an out-of-bounds write in libimagecodec.quram.so |
| 2025-05-22 | CVE-2025-4632 | high | Samsung's MagicINFO 9 Server had an unpatched, exploited path traversal vulnerability allowing arbitrary file writing as system authority. |
| 2023-09-18 | CVE-2022-22265 | high | Samsung Exynos chipsets allow malicious memory write and code execution. |
| 2023-06-29 | CVE-2021-25372 | high | Samsung mobile devices had an improperly checked boundary in their DSP driver, leading to out-of-bounds memory access and active exploitation in the wild. |
| 2023-06-29 | CVE-2021-25371 | high | Samsung mobile devices have an unspecified vulnerability allowing arbitrary code execution via ELF library loading within the DSP driver, and it's currently being exploited in the wild. |
| 2023-06-29 | CVE-2021-25487 | high | Samsung mobile devices contained an out-of-bounds read vulnerability allowing remote code execution, and it's currently being exploited in the wild. |
| 2023-05-19 | CVE-2023-21492 | high | Samsung Android devices exposed sensitive info in logs, allowing ASLR bypass. |
| 2022-11-08 | CVE-2021-25337 | high | Samsung mobile devices had unpatched clipboard service access control vulnerability allowing untrusted apps to read or write files |
| 2022-11-08 | CVE-2021-25370 | high | Samsung mobile devices suffer memory corruption Vulnerability |
| 2022-11-08 | CVE-2021-25369 | high | Samsung mobile devices exposed kernel info due to improper access control |
| 2023-06-29 | CVE-2021-25489 | high | Samsung mobile devices had a format string bug in the modem interface driver, leading to kernel panics and active exploitation in the wild. |
| 2023-06-29 | CVE-2021-25395 | high | Samsung mobile devices have a race condition vulnerability allowing unauthorized writes after radio privilege compromise, and it's actively being exploited in the wild. |
| 2023-06-29 | CVE-2021-25394 | high | Samsung mobile devices have a race condition vulnerability allowing unauthorized writes with radio privilege compromise, and it's actively being exploited in the wild. |
| 2026-04-24 | CVE-2024-7399 | high | Samsung MagicINFO 9 Server path traversal vulnerability allows attackers to write arbitrary files as system authority. |
| 2026-05-19 | CVE-2026-47311 | high | CVE-2026-47311: Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows |
| 2026-05-19 | CVE-2026-47314 | high | CVE-2026-47314: Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflo |
| 2026-05-19 | CVE-2026-47310 | high | CVE-2026-47310: Use after free vulnerability in Samsung Open Source Escargot allows Pointer Mani |
DOSSIER SOURCES
- Samsung Electronics (KRX:005930) Company Profile & Description · stockanalysis.com
- Samsung CVEs and Security Vulnerabilities - OpenCVE · app.opencve.io
- Samsung Products Multiple Vulnerabilities - hkcert.org · www.hkcert.org
- Masimo Cyberattack Disrupts Operations Amid $350M Audio Brand Sale to ... · dailysecurityreview.com
- Masimo Cyberattack Disrupts Operations Amid $350M Audio Brand Sale to ... · dailysecurityreview.com
- Recent Cybersecurity Attacks and Data Breaches - 2026 · intellizence.com
- HACKMAGEDDON - Information Security Timelines and Statistics · www.hackmageddon.com
Open questions: What is the full extent of the cyberattack impacting Masimo's operations? · What specific Samsung subsidiary acquired Sound United?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-21 05:50:56.796711+00:00