Samsung Notes
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Samsung Notes.
By the Year
In 2026 there have been 0 vulnerabilities in Samsung Notes. Last year, in 2025 Notes had 28 security vulnerabilities published. Right now, Notes is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 28 | 6.28 |
| 2024 | 20 | 5.90 |
| 2023 | 0 | 0.00 |
| 2022 | 1 | 5.50 |
| 2021 | 11 | 6.84 |
| 2020 | 0 | 0.00 |
| 2019 | 0 | 0.00 |
| 2018 | 1 | 7.00 |
It may take a day or so for new Notes vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Samsung Notes Security Vulnerabilities
Samsung Notes 4.4.30.63: OOB write in SPI decoder (CVE-2025-21070)
CVE-2025-21070
4 - Medium
- October 10, 2025
Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-of-bounds memory.
Samsung Notes OB-Read in Image Parsing Before 4.4.30.63
CVE-2025-21069
4 - Medium
- October 10, 2025
Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Samsung Notes OOB Read in Image Data (Pre-4.4.30.63)
CVE-2025-21068
4 - Medium
- October 10, 2025
Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Samsung Notes OOB Read in image buffer (4.4.30.63)
CVE-2025-21067
4 - Medium
- October 10, 2025
Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21066: OOB Read in Samsung Notes SPI Decoder <4.4.30.63
CVE-2025-21066
4 - Medium
- October 10, 2025
Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
Samsung Notes <4.4.30.63: Local Implicit Intent Leaks Shared Notes
CVE-2025-21057
4 - Medium
- October 10, 2025
Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to access shared notes.
Samsung Notes <4.4.29.23: Implicit Intent Leak via Translation (CVE-2025-20977)
CVE-2025-20977
- May 07, 2025
Use of implicit intent for sensitive communication in translation in Samsung Notes prior to version 4.4.29.23 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.
Samsung Notes <=4.4.29.23 OOBR in Binary Text Content
CVE-2025-20976
7.5 - High
- May 07, 2025
Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.29.23 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
SamsungNotes 4.4.26.45 Local Intent Exposure
CVE-2025-20950
5.5 - Medium
- April 08, 2025
Use of implicit intent for sensitive communication in SamsungNotes prior to version 4.4.26.45 allows local attackers to access sensitive information.
Samsung Notes <4.4.26.71: OOB Read in Base Content
CVE-2025-20918
7.5 - High
- March 06, 2025
Out-of-bounds read in applying extra data of base content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Read via BMP Parsing before v4.4.26.71
CVE-2025-20933
5.5 - Medium
- March 06, 2025
Out-of-bounds read in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Read in Video Binary before 4.4.26.71
CVE-2025-20919
7.5 - High
- March 06, 2025
Out-of-bounds read in applying binary of video content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <4.4.26.71: OOB read via action link data
CVE-2025-20920
7.5 - High
- March 06, 2025
Out-of-bounds read in action link data in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
OOB read in Samsung Notes <4.4.26.71 via binary apply
CVE-2025-20921
7.5 - High
- March 06, 2025
Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Read before 4.4.26.71
CVE-2025-20922
7.5 - High
- March 06, 2025
Out-of-bounds read in appending text paragraph in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes v4.4.26.71 Improper Access Control Across Profiles
CVE-2025-20924
- March 06, 2025
Improper access control in Samsung Notes prior to version 4.4.26.71 allows physical attackers to access data across multiple user profiles.
Samsung Notes <4.4.26.71 OOB Read via binary apply of text data
CVE-2025-20925
- March 06, 2025
Out-of-bounds read in applying binary of text data in Samsung Notes prior to version 4.4.26.71 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes 4.4.26.71: OOB Read via Image Parsing
CVE-2025-20927
- March 06, 2025
Out-of-bounds read in parsing image data in Samsung Notes prior to vaersion 4.4.26.71 allows local attackers to access out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <=4.4.26.71 OOB Read via WBMP parsing
CVE-2025-20928
- March 06, 2025
Out-of-bounds read in parsing wbmp image in Samsung Notes prior to vaersion 4.4.26.71 allows local attackers to access out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <=4.4.26.71: OOB Read via PDF Binary Application
CVE-2025-20917
7.5 - High
- March 06, 2025
Out-of-bounds read in applying binary of pdf content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Read via SPen (before 4.4.26.71)
CVE-2025-20916
7.5 - High
- March 06, 2025
Out-of-bounds read in reading string of SPen in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <4.4.26.71: OOB Read in BMP RLE parser
CVE-2025-20932
- March 06, 2025
Out-of-bounds read in parsing rle of bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to?read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <4.4.26.71: OOB write via BMP parsing
CVE-2025-20931
7.8 - High
- March 06, 2025
Out-of-bounds write in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.
Memory Corruption
Samsung Notes OOB Read in JPEG Parsing before 4.4.26.71
CVE-2025-20930
- March 06, 2025
Out-of-bounds read in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <4.4.26.71: JPEG parse OOB write & remote code exec
CVE-2025-20929
7.8 - High
- March 06, 2025
Out-of-bounds write in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.
Memory Corruption
Samsung Notes OOB Read via Binary Voice Content <4.4.26.71
CVE-2025-20915
7.5 - High
- March 06, 2025
Out-of-bounds read in applying binary of voice content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes <4.4.26.71: OOB Read in Handwriting Binary
CVE-2025-20914
7.5 - High
- March 06, 2025
Out-of-bounds read in applying binary of hand writing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Read <4.4.26.71 in Drawing Binary
CVE-2025-20913
- March 06, 2025
Out-of-bounds read in applying binary of drawing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
Out-of-bounds Read
Samsung Notes OOB Stack Write CVE-2024-34657 (v<4.4.21.62)
CVE-2024-34657
9.8 - Critical
- September 04, 2024
Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.
Memory Corruption
Path traversal in Samsung Notes <4.4.21.62 allows local attackers to exec code
CVE-2024-34656
7.8 - High
- September 04, 2024
Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Directory traversal
Samsung Notes OOB Read Enables Local ASLR Bypass
CVE-2024-34658
7.1 - High
- September 04, 2024
Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.
Out-of-bounds Read
Samsung Notes OOB Heap Write Prior to v4.4.21.62 (Local Code Exec)
CVE-2024-34660
7.8 - High
- September 04, 2024
Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Memory Corruption
Samsung Notes OOB Read in Parse Obj Header <4.4.21.62 (Local Memory Leak)
CVE-2024-34633
3.3 - Low
- August 07, 2024
Out-of-bounds read in parsing object header in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.
Out-of-bounds Read
Samsung Notes OOB Read in Textbox Parser <4.4.21.62
CVE-2024-34635
3.3 - Low
- August 07, 2024
Out-of-bounds read in parsing textbox object in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.
Out-of-bounds Read
Samsung Notes OOB Read in Connected Object List (4.4.21.62 and earlier)
CVE-2024-34634
3.3 - Low
- August 07, 2024
Out-of-bounds read in parsing connected object list in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.
Out-of-bounds Read
Samsung Notes <=4.4.21.62 OOB Read in UUID Parsing Allows Local Memory Leak
CVE-2024-34632
3.3 - Low
- August 07, 2024
Out-of-bounds read in uuid parsing in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.
Out-of-bounds Read
Samsung Notes <=4.4.21.62: OOB Read via Binary Update
CVE-2024-34631
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
OOB Read in Samsung Notes <4.4.21.62 Textbox Allows Local Memory Leak
CVE-2024-34630
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes <4.4.21.62: OOB Read in Binary Text Common Obj
CVE-2024-34629
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes 4.4.21.62 OOB Read via Binary Path (CVE202434628)
CVE-2024-34628
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes <4.4.21.62 OOB Read via Binary Apply
CVE-2024-34626
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes <=4.4.21.62 OOB Read via Connection Point - Local Exploit
CVE-2024-34625
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes OOB Read Prior to 4.4.21.62 in Apply Paragraphs
CVE-2024-34624
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes OOB write before v4.4.21.62 allows exec
CVE-2024-34623
7.8 - High
- August 07, 2024
Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
Memory Corruption
Samsung Notes OOB Write in Paragraph Append pre-4.4.21.62
CVE-2024-34622
7.8 - High
- August 07, 2024
Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
Memory Corruption
Samsung Notes 4.4.21.62 OOB Read via Binary Apply, Local Attack
CVE-2024-34621
5.5 - Medium
- August 07, 2024
Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes OOB Read Prior to 4.4.21.62
CVE-2024-34627
5.5 - Medium
- August 07, 2024
Out-of-bounds read in parsing implemention in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.
Out-of-bounds Read
Samsung Notes 4.4.15 - Local Input Validation Deletion (CVE-2024-20868)
CVE-2024-20868
7.1 - High
- May 07, 2024
Improper input validation in Samsung Notes prior to version 4.4.15 allows local attackers to delete files with Samsung Notes privilege under certain conditions.
Path traversal in Samsung Notes UriFileUtils before 4.3.14.39
CVE-2022-36831
5.5 - Medium
- August 05, 2022
Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.
Directory traversal
A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61
CVE-2021-25495
7.8 - High
- October 06, 2021
A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
Memory Corruption
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Samsung Notes or by Samsung? Click the Watch button to subscribe.