Skip to content
COOEY

FAIL › dossier

Samsung

VENDOR

· dossier confidence 60%

Samsung, a global electronics leader, has a history of significant security vulnerabilities in its mobile devices and server software, including remote code execution and path traversal flaws. Recent incidents impacting MagicINFO and mobile device components highlight ongoing security challenges.

PROFILE
CategoryElectronicsWhat they doSamsung Electronics engages in the consumer electronics, information technology, and mobile communications businesses worldwide. The company operates through four divisions: Device eXperience (DX), Device Solutions (DS), SDC, and Harman.HQSouth KoreaOwnershippublic Websitehttps://stockanalysis.com/quote/krx/005930/company/ ↗
SECURITY POSTURE

Samsung has a history of high-severity vulnerabilities in its mobile devices, often related to memory corruption and remote code execution. These vulnerabilities frequently impact a wide range of devices and software versions.

Notable failures
  • CVE-2025-21042 (RCE) - libimagecodec.quram.so out-of-bounds write
  • CVE-2022-22265 (RCE) - Exynos chipset use-after-free
  • CVE-2021-25487 (RCE) - Modem interface driver out-of-bounds read
  • CVE-2025-4632 - MagicINFO 9 Server path traversal
  • CVE-2021-25394/25395 (RCE) - MFC charger driver race condition/use-after-free
  • CVE-2024-7399 - MagicINFO 9 Server path traversal
Patterns: Recurring RCE vulnerabilities in mobile devices; Vulnerabilities in modem interface drivers; Memory corruption issues (use-after-free); Path traversal vulnerabilities in MagicINFO server
FAILURE HISTORY · 18
DATEEVENTSEVSUMMARY
2025-11-10 CVE-2025-21042 high Samsung mobile devices had an unpatched out-of-bounds write vulnerability allowing remote code execution.
2025-10-02 CVE-2025-21043 high Samsung mobile devices vulnerable to remote code execution due to an out-of-bounds write in libimagecodec.quram.so
2025-05-22 CVE-2025-4632 high Samsung's MagicINFO 9 Server had an unpatched, exploited path traversal vulnerability allowing arbitrary file writing as system authority.
2023-09-18 CVE-2022-22265 high Samsung Exynos chipsets allow malicious memory write and code execution.
2023-06-29 CVE-2021-25372 high Samsung mobile devices had an improperly checked boundary in their DSP driver, leading to out-of-bounds memory access and active exploitation in the wild.
2023-06-29 CVE-2021-25371 high Samsung mobile devices have an unspecified vulnerability allowing arbitrary code execution via ELF library loading within the DSP driver, and it's currently being exploited in the wild.
2023-06-29 CVE-2021-25487 high Samsung mobile devices contained an out-of-bounds read vulnerability allowing remote code execution, and it's currently being exploited in the wild.
2023-05-19 CVE-2023-21492 high Samsung Android devices exposed sensitive info in logs, allowing ASLR bypass.
2022-11-08 CVE-2021-25337 high Samsung mobile devices had unpatched clipboard service access control vulnerability allowing untrusted apps to read or write files
2022-11-08 CVE-2021-25370 high Samsung mobile devices suffer memory corruption Vulnerability
2022-11-08 CVE-2021-25369 high Samsung mobile devices exposed kernel info due to improper access control
2023-06-29 CVE-2021-25489 high Samsung mobile devices had a format string bug in the modem interface driver, leading to kernel panics and active exploitation in the wild.
2023-06-29 CVE-2021-25395 high Samsung mobile devices have a race condition vulnerability allowing unauthorized writes after radio privilege compromise, and it's actively being exploited in the wild.
2023-06-29 CVE-2021-25394 high Samsung mobile devices have a race condition vulnerability allowing unauthorized writes with radio privilege compromise, and it's actively being exploited in the wild.
2026-04-24 CVE-2024-7399 high Samsung MagicINFO 9 Server path traversal vulnerability allows attackers to write arbitrary files as system authority.
2026-05-19 CVE-2026-47311 high CVE-2026-47311: Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows
2026-05-19 CVE-2026-47314 high CVE-2026-47314: Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflo
2026-05-19 CVE-2026-47310 high CVE-2026-47310: Use after free vulnerability in Samsung Open Source Escargot allows Pointer Mani
Open questions: What is the full extent of the cyberattack impacting Masimo's operations? · What specific Samsung subsidiary acquired Sound United?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-21 05:50:56.796711+00:00