Executive brief
The DualDAR driver is a low-level software component in Samsung mobile devices that manages storage access. A flaw in how it validates user input allows a local attacker with elevated privileges to execute arbitrary code with root access, potentially compromising the entire device and all data stored on it.
Technical details
The vulnerability is an improper input validation flaw in the Samsung DualDAR driver, a firmware component responsible for managing dual data access rules on mobile devices. A local attacker with privileged (non-root) access can bypass input validation checks to trigger arbitrary code execution with root privilege. The attack requires local access and elevated privileges but no user interaction. Exploitation could allow complete device compromise. The vulnerability is patched in SMR (Samsung Monthly Release) Sep-2026 Release 1 and later.
Affected products
- Samsung DualDAR driver prior to SMR Sep-2026 Release 1
Timeline
- 2026-09-09: disclosed
- 2026-09: patched: SMR Sep-2026 Release 1