VDB
CVE-2025-21007
CVE-2025-21007
PUBLISHED
CVSS 5.5 MEDIUM
Out-of-bounds write in accessing uninitialized memory in libsavsvc.so prior to Android 15 allows local attackers to cause memory corruption.
EPSS 0.12% · 2.1th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.12%
2.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| samsung | android | 0 |
| Samsung Mobile | libsavsvc.so | * |
Timeline
- Nov 6, 2024 CVE ID Reserved
- Jul 8, 2025 EPSS Score
- Jul 8, 2025 Coalition ESS Score
- Jul 8, 2025 CVE Published
- Jul 8, 2025 CVE Updated
- Jul 15, 2025 Coalition ESS Score
- Jul 18, 2025 EPSS Score
- Jul 27, 2025 EPSS Score
- Aug 6, 2025 EPSS Score
- Aug 15, 2025 EPSS Score
- Aug 22, 2025 Coalition ESS Score
- Aug 25, 2025 EPSS Score