PT-2024-26081 · Samsung · Samsung Notes

Harsh Tyagi

·

Published

2024-09-03

·

Updated

2024-09-07

·

CVE-2024-34660

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Samsung Notes versions prior to 4.4.21.62
Description The issue is a heap-based out-of-bounds write that allows local attackers to execute arbitrary code. This can be exploited by attackers to gain unauthorized access and control over the affected system.
Recommendations For versions prior to 4.4.21.62, update to version 4.4.21.62 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive features or functions within Samsung Notes until the update is applied.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2024-34660

Affected Products

Samsung Notes