[UPDATE] [hoch] Samsung Android: Mehrere Schwachstellen
Ein Angreifer kann mehrere Schwachstellen in Samsung Android ausnutzen, um beliebigen Code auszuführen – sogar mit Root-Rechten –, sich erweiterte Berechtigungen zu verschaffen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Daten zu manipulieren oder einen Denial-of-Service-Zustand auszulösen.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3219
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-210850.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210860.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210870.12% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210880.12% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210890.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210900.10% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210910.10% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210920.41% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 34% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210930.09% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-210940.14% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
Referenced CVEs
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- unknownCVE-2026-21104: Heap-based buffer overflow in KnoxVault trustlet prior to SMR Sep-2026 Release 1 allows local …nvd
- unknownCVE-2026-21103: Path traversal in GalaxyDiagnostics prior to SMR Sep-2026 Release 1 allows physical attackers …nvd
- unknownCVE-2026-21102: Use after free in DualDAR prior to SMR Sep-2026 Release 1 allows local privileged attackers to…nvd
- unknownCVE-2026-21101: Improper input validation in DualDAR driver prior to SMR Sep-2026 Release 1 allows local privi…nvd
- unknownCVE-2026-21100: Improper access control in SystemUI prior to SMR Sep-2026 Release 1 allows local attackers to …nvd
- unknownCVE-2026-21099: Improper access control in SettingsProvider prior to SMR Sep-2026 Release 1 allows local attac…nvd
- unknownCVE-2026-21098: Improper access control in Link to Windows prior to SMR Sep-2026 Release 1 allows local attack…nvd
- unknownCVE-2026-21097: Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows l…nvd
- unknownCVE-2026-21096: Heap-based buffer overflow in JPEG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Rel…nvd
- unknownCVE-2026-21095: Heap-based buffer overflow in DNG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Rele…nvd
- unknownCVE-2026-21094: Improper input validation in wpa_supplicant prior to SMR Sep-2026 Release 1 allows adjacent at…nvd
- unknownCVE-2026-21093: Stack-based buffer overflow in PROCA trustlet prior to SMR Sep-2026 Release 1 allows local pri…nvd
Recent advisories for Samsung Android
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownCVE-2026-21112: Improper input validation in Samsung Tips prior to Android 17 allows local attackers to launch…nvd · 2026-09-09
- medium[NEW] [medium] Samsung Android: Multiple vulnerabilitiescert-bund · 2026-08-11
- unknownCVE-2026-21059: Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Re…nvd · 2026-08-10
- medium[NEW] [medium] Samsung Android: Multiple vulnerabilitiescert-bund · 2026-07-10
More from CERT-Bund (BSI) Security Advisories
- medium[UPDATE] [mittel] vim: Mehrere Schwachstellen2026-09-10
- medium[UPDATE] [mittel] ffmpeg: Mehrere Schwachstellen ermöglichen Codeausführung und DoS2026-09-10
- high[UPDATE] [hoch] ffmpeg: Mehrere Schwachstellen2026-09-10
- medium[UPDATE] [mittel] Unbound: Mehrere Schwachstellen2026-09-10
- high[UPDATE] [hoch] Internet Systems Consortium BIND: Mehrere Schwachstellen2026-09-10