Samsung
Samsung Blockchain Keystore: vulnerabilities and CVEs
Samsung Blockchain Keystore has 8 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs8
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-21021 | Medium (6.7) | 0.13% | — | Aug 6, 2025 | Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory. |
| CVE-2025-21020 | Medium (6.7) | 0.13% | — | Aug 6, 2025 | Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory. |
| CVE-2025-21018 | Medium (4.4) | 0.15% | — | Aug 6, 2025 | Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bounds memory. |
| CVE-2025-21017 | Medium (6.7) | 0.15% | — | Aug 6, 2025 | Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory. |
| CVE-2025-20901 | Medium (4.4) | 0.16% | — | Feb 4, 2025 | Out-of-bounds read in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to read out-of-bounds memory. |
| CVE-2025-20900 | Medium (4.4) | 0.15% | — | Feb 4, 2025 | Out-of-bounds write in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to write out-of-bounds memory. |
| CVE-2024-49406 | Medium (4.4) | 0.10% | — | Nov 6, 2024 | Improper validation of integrity check value in Blockchain Keystore prior to version 1.3.16 allows local attackers to modify transaction. Root privilege is required for triggering this vulnerability. |
| CVE-2023-30722 | High (7.8) | 0.18% | — | Sep 6, 2023 | Protection Mechanism Failure in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.13.5 allows local attacker to execute arbitrary code. |