CVE-2026-21038
Improper Input Validation in Samsung Android USB Driver
Publication date: 2026-06-05
Last updated on: 2026-06-05
Assigner: Samsung Mobile
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| samsung | android_usb_driver | 1.9.5.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is caused by improper input validation in the Samsung Android USB Driver for Windows versions prior to 1.9.5.0. It allows a local attacker to access out-of-bounds memory, which means the attacker can read or potentially manipulate memory outside the intended boundaries.
How can this vulnerability impact me? :
The impact of this vulnerability is that a local attacker could exploit it to access memory outside the intended range. This could lead to unauthorized access to sensitive information or cause the system to behave unpredictably, potentially leading to crashes or other security issues.