VendorsSamsungnotesall versions
Vulnerabilities

Samsung Notes

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

64CVEs
CVE-2024-34657
Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.
Published 2024-09-04 · Analyzed
9.8EPSS 0.006
CVE-2021-25494
A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
Published 2021-10-06 · Modified
7.8EPSS 0.003
CVE-2021-25495
A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
Published 2021-10-06 · Modified
7.8EPSS 0.003
CVE-2021-25497
A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
Published 2021-10-06 · Modified
7.8EPSS 0.003
CVE-2021-25496
A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
Published 2021-10-06 · Modified
7.8EPSS 0.003
CVE-2021-25498
A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
Published 2021-10-06 · Modified
7.8EPSS 0.003
CVE-2024-34623
Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
Published 2024-08-07 · Analyzed
7.8EPSS 0.002
CVE-2024-34656
Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Published 2024-09-04 · Analyzed
7.8EPSS 0.002
CVE-2021-25355
Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action without permission via hijacking the PendingIntent.
Published 2021-03-25 · Modified
7.8EPSS 0.002
CVE-2024-34622
Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
Published 2024-08-07 · Analyzed
7.8EPSS 0.002
CVE-2024-34660
Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Published 2024-09-04 · Analyzed
7.8EPSS 0.002
CVE-2025-20929
Out-of-bounds write in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.
Published 2025-03-06 · Analyzed
7.8EPSS 0.002
CVE-2025-20931
Out-of-bounds write in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.
Published 2025-03-06 · Analyzed
7.8EPSS 0.002
CVE-2025-20914
Out-of-bounds read in applying binary of hand writing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20922
Out-of-bounds read in appending text paragraph in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20916
Out-of-bounds read in reading string of SPen in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20918
Out-of-bounds read in applying extra data of base content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20921
Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20920
Out-of-bounds read in action link data in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20917
Out-of-bounds read in applying binary of pdf content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20915
Out-of-bounds read in applying binary of voice content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20919
Out-of-bounds read in applying binary of video content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
7.5EPSS 0.003
CVE-2025-20976
Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.29.23 allows attackers to read out-of-bounds memory.
Published 2025-05-07 · Analyzed
7.5EPSS 0.003
CVE-2021-25492
Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read.
Published 2021-10-06 · Modified
7.3EPSS 0.002
CVE-2021-25493
Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read
Published 2021-10-06 · Modified
7.1EPSS 0.002
CVE-2024-20868
Improper input validation in Samsung Notes prior to version 4.4.15 allows local attackers to delete files with Samsung Notes privilege under certain conditions.
Published 2024-05-07 · Analyzed
7.1EPSS 0.002
CVE-2024-34658
Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.
Published 2024-09-04 · Analyzed
7.1EPSS 0.002
CVE-2025-21069
Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Published 2025-10-10 · Analyzed
7.1EPSS 0.001
CVE-2025-21067
Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Published 2025-10-10 · Analyzed
7.1EPSS 0.001
CVE-2025-21068
Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Published 2025-10-10 · Analyzed
7.1EPSS 0.001
CVE-2025-21066
Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Published 2025-10-10 · Analyzed
7.1EPSS 0.001
CVE-2018-10501
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Notes Fixed in version 2.0.02.31. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of ZIP files. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5358.
Published 2018-09-24 · Modified
7.0EPSS 0.003
CVE-2026-21107
Out-of-bounds write in Samsung Notes prior to version 4.4.45.5 allows local attackers to write out-of-bounds memory.
Published 2026-09-09 · Analyzed
6.9EPSS 0.001
CVE-2022-36831
Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.
Published 2022-08-05 · Modified
6.2EPSS 0.002
CVE-2021-25367
Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without permission.
Published 2021-03-25 · Modified
5.5EPSS 0.006
CVE-2021-25405
An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.
Published 2021-06-11 · Modified
5.5EPSS 0.002
CVE-2024-34621
Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Published 2024-08-07 · Analyzed
5.5EPSS 0.002
CVE-2025-20913
Out-of-bounds read in applying binary of drawing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Published 2025-03-06 · Analyzed
5.5EPSS 0.002
CVE-2024-34624
Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Published 2024-08-07 · Analyzed
5.5EPSS 0.002
CVE-2024-34625
Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Published 2024-08-07 · Analyzed
5.5EPSS 0.002
1 / 2Next →