CVE-2025-20891
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Feb 4, 2025
Updated: Feb 12, 2025
CWE ID 125
Summary
CVE-2025-20891 is a vulnerability in libsthmbc.so, affecting versions prior to the SMR Jan-2025 Release 1. This issue permits an out-of-bounds read, enabling local attackers to access arbitrary memory. The exploitation of this vulnerability requires user interaction with malformed video thumbnails.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Samsung Android
Affected Vendors
- Samsung