CVE-2026-21068
Received Received - Intake

Stack-based Buffer Overflow in libril_sem.so

Vulnerability report for CVE-2026-21068, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-10

Last updated on: 2026-08-10

Assigner: Samsung Mobile

Description

Stack-based buffer overflow in libril_sem.so prior to SMR Aug-2026 Release 1 allows privileged local attackers to execute arbitrary code.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-10
Last Modified
2026-08-10
Generated
2026-08-10
AI Q&A
2026-08-10
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
samsung libril_sem to SMR_Aug-2026_Release_1 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a stack-based buffer overflow in libril_sem.so before the SMR Aug-2026 Release 1. It allows local attackers with high privileges to execute arbitrary code by exploiting improper bounds checking in the library.

Detection Guidance

This vulnerability is a local privilege escalation issue in libril_sem.so. Detection requires checking for the presence of vulnerable versions of this library on affected systems. Examine system libraries for libril_sem.so and verify version against SMR Aug-2026 Release 1 or later.

Impact Analysis

If exploited, this vulnerability could allow an attacker to gain full control over the affected system, leading to unauthorized access, data theft, or further compromise of the device.

Compliance Impact

This vulnerability allows privileged local attackers to execute arbitrary code due to a stack-based buffer overflow. Such arbitrary code execution could lead to unauthorized access, data breaches, or manipulation of sensitive data, which may violate compliance requirements under GDPR, HIPAA, or other regulations depending on the affected system and data involved.

Mitigation Strategies

Apply the SMR Aug-2026 Release 1 or later update to patch libril_sem.so. Restrict local access to privileged users only. Monitor for unusual system behavior or unauthorized privilege escalation attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-21068. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart