📦 Notes

by Samsung

🔍 What is Notes?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-20931

HIGH CVSS 7.3 Mar 6, 2025

This vulnerability allows local attackers to execute arbitrary code by exploiting an out-of-bounds write when parsing BMP images in Samsung Notes. Attackers can achieve remote code execution by tricki...

CVE-2025-20929

HIGH CVSS 7.3 Mar 6, 2025

This vulnerability allows local attackers to execute arbitrary code by exploiting an out-of-bounds write when parsing JPEG images in Samsung Notes. Attackers can achieve remote code execution on affec...

CVE-2024-34656

HIGH CVSS 7.3 Sep 4, 2024

A path traversal vulnerability in Samsung Notes allows local attackers to execute arbitrary code by manipulating file paths. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile de...

CVE-2024-34622

HIGH CVSS 7.8 Aug 7, 2024

This vulnerability allows local attackers to write data beyond intended memory boundaries in Samsung Notes, potentially enabling arbitrary code execution with the application's privileges. It affects ...

CVE-2021-25497

HIGH CVSS 7.3 Oct 6, 2021

This buffer overflow vulnerability in Samsung Notes' libSPenBase library allows attackers to execute arbitrary code on affected devices. It affects Samsung Notes users on Android devices before versio...

CVE-2021-25492

HIGH CVSS 7.3 Oct 6, 2021

This vulnerability in Samsung Notes allows attackers to read memory beyond allocated buffer boundaries due to insufficient input validation in the libSPenBase library. It affects Samsung Notes users o...

CVE-2021-25495

HIGH CVSS 7.3 Oct 6, 2021

A heap buffer overflow vulnerability in Samsung Notes' libSPenBase library allows attackers to execute arbitrary code on affected devices. This affects Samsung Notes versions prior to 4.3.02.61 on Sam...

CVE-2025-21067

MEDIUM CVSS 4.0 Oct 10, 2025

This vulnerability allows local attackers to read memory outside the intended buffer boundaries in Samsung Notes. It affects users of Samsung Notes versions prior to 4.4.30.63 on Samsung mobile device...

CVE-2025-21068

MEDIUM CVSS 4.0 Oct 10, 2025

This vulnerability allows local attackers to read memory outside the intended bounds when processing image data in Samsung Notes. It affects users of Samsung Notes versions prior to 4.4.30.63 on Samsu...

CVE-2025-21069

MEDIUM CVSS 4.0 Oct 10, 2025

This vulnerability allows local attackers to read memory outside the intended bounds when parsing image data in Samsung Notes. It affects users of Samsung Notes versions prior to 4.4.30.63 on Samsung ...

CVE-2025-21070

MEDIUM CVSS 4.0 Oct 10, 2025

This vulnerability allows local attackers to perform out-of-bounds memory writes in Samsung Notes' SPI decoder. It affects users of Samsung Notes versions prior to 4.4.30.63 on Samsung mobile devices....

CVE-2025-21066

MEDIUM CVSS 4.0 Oct 10, 2025

An out-of-bounds read vulnerability in Samsung Notes' SPI decoder allows local attackers to access memory beyond intended boundaries. This affects Samsung Notes versions prior to 4.4.30.63 on Samsung ...

CVE-2025-21057

MEDIUM CVSS 4.0 Oct 10, 2025

This vulnerability in Samsung Notes allows local attackers to access shared notes through improper use of implicit intents. It affects Samsung Notes versions prior to 4.4.30.63 on Samsung Android devi...

CVE-2025-21037

MEDIUM CVSS 4.1 Sep 3, 2025

This vulnerability in Samsung Notes allows physical attackers to access data across multiple user profiles on the same device when they have physical access. It requires user interaction to trigger, a...

CVE-2025-21036

MEDIUM CVSS 5.0 Sep 3, 2025

A local privilege escalation vulnerability in Samsung Notes allows attackers with physical device access to access exported note files they shouldn't have permission to view. This affects Samsung Note...

CVE-2025-20976

MEDIUM CVSS 5.5 May 7, 2025

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond intended boundaries when processing binary text content. This affects Samsung Notes users on Android devices...

CVE-2025-20930

MEDIUM CVSS 5.5 Mar 6, 2025

This vulnerability allows local attackers to read out-of-bounds memory in Samsung Notes when parsing JPEG images. Attackers could potentially access sensitive information from adjacent memory location...

CVE-2025-20932

MEDIUM CVSS 5.5 Mar 6, 2025

This vulnerability allows local attackers to read out-of-bounds memory when parsing RLE-compressed BMP images in Samsung Notes. It affects Samsung Notes versions prior to 4.4.26.71. Attackers could po...

CVE-2025-20928

MEDIUM CVSS 5.5 Mar 6, 2025

This vulnerability allows local attackers to read memory outside the intended buffer when Samsung Notes parses WBMP image files. Attackers could potentially access sensitive information from adjacent ...

CVE-2025-20920

MEDIUM CVSS 5.5 Mar 6, 2025

An out-of-bounds read vulnerability in Samsung Notes' action link data handling allows attackers to read memory beyond allocated boundaries. This affects Samsung Notes users on Android devices with ve...

CVE-2025-20922

MEDIUM CVSS 5.5 Mar 6, 2025

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond intended boundaries when appending text paragraphs. This affects Samsung Notes users on Android devices with...

CVE-2025-20924

MEDIUM CVSS 4.6 Mar 6, 2025

A physical access control vulnerability in Samsung Notes allows attackers with physical device access to bypass user profile isolation and access data from other user profiles on the same device. This...

CVE-2025-20914

MEDIUM CVSS 5.5 Mar 6, 2025

An out-of-bounds read vulnerability in Samsung Notes' handwriting content processing allows attackers to read memory beyond allocated boundaries. This affects Samsung Notes users on Android devices wi...

CVE-2025-20916

MEDIUM CVSS 5.5 Mar 6, 2025

An out-of-bounds read vulnerability in Samsung Notes' SPen string reading functionality allows attackers to access memory beyond intended boundaries. This affects Samsung Notes versions prior to 4.4.2...

CVE-2025-20918

MEDIUM CVSS 5.5 Mar 6, 2025

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond allocated boundaries when processing extra data in base content. This affects Samsung Notes users on Android...

CVE-2024-34658

MEDIUM CVSS 4.0 Sep 4, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to bypass ASLR (Address Space Layout Randomization). This affects Samsung mobile device users with vulnerable versions of Sa...

CVE-2024-34632

MEDIUM CVSS 4.0 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes' UUID parsing allows a local attacker to read unauthorized memory. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile devices...

CVE-2024-34634

MEDIUM CVSS 4.0 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows a local attacker to access unauthorized memory when parsing connected object lists. This affects Samsung Notes versions prior to 4.4.21.62 o...

CVE-2024-34628

MEDIUM CVSS 5.5 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to potentially read arbitrary memory contents. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile devi...

CVE-2024-34630

MEDIUM CVSS 5.5 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to potentially read memory contents when applying their own binary with a textbox. This affects Samsung Notes users on Samsu...

CVE-2024-34621

MEDIUM CVSS 5.5 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to potentially read memory contents. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile devices. Attac...

CVE-2024-34624

MEDIUM CVSS 5.5 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to potentially read memory contents. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile devices. Attac...

CVE-2024-34626

MEDIUM CVSS 5.5 Aug 7, 2024

An out-of-bounds read vulnerability in Samsung Notes allows local attackers to potentially read memory contents. This affects Samsung Notes versions prior to 4.4.21.62 on Samsung mobile devices. Attac...

CVE-2024-20868

MEDIUM CVSS 4.4 May 7, 2024

This vulnerability in Samsung Notes allows local attackers to delete files with Samsung Notes application privileges under certain conditions. It affects Samsung Notes versions prior to 4.4.15 on Sams...