Executive brief
Samsung's VC1 video codec library (libsavsvc.so) contains a flaw in how it converts between numeric types, allowing a local attacker to write data outside designated memory boundaries. This vulnerability could enable an attacker with access to the device to corrupt system memory, crash applications, or potentially execute arbitrary code, compromising device integrity and user data.
Technical details
The vulnerability is a numeric type conversion error in the VC1 codec implementation within libsavsvc.so. The flaw allows an attacker to trigger out-of-bounds memory writes through improper conversion between numeric types, likely when processing video frames. This is a local vulnerability, requiring an attacker to have code execution or direct access to the affected library. The vulnerability affects versions prior to the Samsung Mobile SMR August 2026 Release 1 patch. A successful exploit could lead to memory corruption, denial of service, or potentially elevation of privileges depending on the memory region affected.
Affected products
- Samsung libsavsvc prior to SMR August 2026 Release 1
Timeline
- 2026-08-10: disclosed
- 2026-08: patched: Samsung Mobile Security August 2026 Release 1