Notes Samsung Notes

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Samsung Notes.

By the Year

In 2026 there have been 0 vulnerabilities in Samsung Notes. Last year, in 2025 Notes had 28 security vulnerabilities published. Right now, Notes is on track to have less security vulnerabilities in 2026 than it did last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 28 6.28
2024 20 5.90
2023 0 0.00
2022 1 5.50
2021 11 6.84
2020 0 0.00
2019 0 0.00
2018 1 7.00

It may take a day or so for new Notes vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Samsung Notes Security Vulnerabilities

Samsung Notes 4.4.30.63: OOB write in SPI decoder (CVE-2025-21070)
CVE-2025-21070 4 - Medium - October 10, 2025

Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-of-bounds memory.

Samsung Notes OB-Read in Image Parsing Before 4.4.30.63
CVE-2025-21069 4 - Medium - October 10, 2025

Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.

Samsung Notes OOB Read in Image Data (Pre-4.4.30.63)
CVE-2025-21068 4 - Medium - October 10, 2025

Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.

Samsung Notes OOB Read in image buffer (4.4.30.63)
CVE-2025-21067 4 - Medium - October 10, 2025

Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.

CVE-2025-21066: OOB Read in Samsung Notes SPI Decoder <4.4.30.63
CVE-2025-21066 4 - Medium - October 10, 2025

Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.

Samsung Notes <4.4.30.63: Local Implicit Intent Leaks Shared Notes
CVE-2025-21057 4 - Medium - October 10, 2025

Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to access shared notes.

Samsung Notes <4.4.29.23: Implicit Intent Leak via Translation (CVE-2025-20977)
CVE-2025-20977 - May 07, 2025

Use of implicit intent for sensitive communication in translation in Samsung Notes prior to version 4.4.29.23 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.

Samsung Notes <=4.4.29.23 OOBR in Binary Text Content
CVE-2025-20976 7.5 - High - May 07, 2025

Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.29.23 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

SamsungNotes 4.4.26.45 Local Intent Exposure
CVE-2025-20950 5.5 - Medium - April 08, 2025

Use of implicit intent for sensitive communication in SamsungNotes prior to version 4.4.26.45 allows local attackers to access sensitive information.

Samsung Notes <4.4.26.71: OOB Read in Base Content
CVE-2025-20918 7.5 - High - March 06, 2025

Out-of-bounds read in applying extra data of base content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Read via BMP Parsing before v4.4.26.71
CVE-2025-20933 5.5 - Medium - March 06, 2025

Out-of-bounds read in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Read in Video Binary before 4.4.26.71
CVE-2025-20919 7.5 - High - March 06, 2025

Out-of-bounds read in applying binary of video content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <4.4.26.71: OOB read via action link data
CVE-2025-20920 7.5 - High - March 06, 2025

Out-of-bounds read in action link data in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

OOB read in Samsung Notes <4.4.26.71 via binary apply
CVE-2025-20921 7.5 - High - March 06, 2025

Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Read before 4.4.26.71
CVE-2025-20922 7.5 - High - March 06, 2025

Out-of-bounds read in appending text paragraph in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes v4.4.26.71 Improper Access Control Across Profiles
CVE-2025-20924 - March 06, 2025

Improper access control in Samsung Notes prior to version 4.4.26.71 allows physical attackers to access data across multiple user profiles.

Samsung Notes <4.4.26.71 OOB Read via binary apply of text data
CVE-2025-20925 - March 06, 2025

Out-of-bounds read in applying binary of text data in Samsung Notes prior to version 4.4.26.71 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes 4.4.26.71: OOB Read via Image Parsing
CVE-2025-20927 - March 06, 2025

Out-of-bounds read in parsing image data in Samsung Notes prior to vaersion 4.4.26.71 allows local attackers to access out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <=4.4.26.71 OOB Read via WBMP parsing
CVE-2025-20928 - March 06, 2025

Out-of-bounds read in parsing wbmp image in Samsung Notes prior to vaersion 4.4.26.71 allows local attackers to access out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <=4.4.26.71: OOB Read via PDF Binary Application
CVE-2025-20917 7.5 - High - March 06, 2025

Out-of-bounds read in applying binary of pdf content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Read via SPen (before 4.4.26.71)
CVE-2025-20916 7.5 - High - March 06, 2025

Out-of-bounds read in reading string of SPen in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <4.4.26.71: OOB Read in BMP RLE parser
CVE-2025-20932 - March 06, 2025

Out-of-bounds read in parsing rle of bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to?read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <4.4.26.71: OOB write via BMP parsing
CVE-2025-20931 7.8 - High - March 06, 2025

Out-of-bounds write in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.

Memory Corruption

Samsung Notes OOB Read in JPEG Parsing before 4.4.26.71
CVE-2025-20930 - March 06, 2025

Out-of-bounds read in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <4.4.26.71: JPEG parse OOB write & remote code exec
CVE-2025-20929 7.8 - High - March 06, 2025

Out-of-bounds write in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.

Memory Corruption

Samsung Notes OOB Read via Binary Voice Content <4.4.26.71
CVE-2025-20915 7.5 - High - March 06, 2025

Out-of-bounds read in applying binary of voice content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes <4.4.26.71: OOB Read in Handwriting Binary
CVE-2025-20914 7.5 - High - March 06, 2025

Out-of-bounds read in applying binary of hand writing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Read <4.4.26.71 in Drawing Binary
CVE-2025-20913 - March 06, 2025

Out-of-bounds read in applying binary of drawing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.

Out-of-bounds Read

Samsung Notes OOB Stack Write CVE-2024-34657 (v<4.4.21.62)
CVE-2024-34657 9.8 - Critical - September 04, 2024

Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.

Memory Corruption

Path traversal in Samsung Notes <4.4.21.62 allows local attackers to exec code
CVE-2024-34656 7.8 - High - September 04, 2024

Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.

Directory traversal

Samsung Notes OOB Read Enables Local ASLR Bypass
CVE-2024-34658 7.1 - High - September 04, 2024

Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.

Out-of-bounds Read

Samsung Notes OOB Heap Write Prior to v4.4.21.62 (Local Code Exec)
CVE-2024-34660 7.8 - High - September 04, 2024

Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.

Memory Corruption

Samsung Notes OOB Read in Parse Obj Header <4.4.21.62 (Local Memory Leak)
CVE-2024-34633 3.3 - Low - August 07, 2024

Out-of-bounds read in parsing object header in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

Out-of-bounds Read

Samsung Notes OOB Read in Textbox Parser <4.4.21.62
CVE-2024-34635 3.3 - Low - August 07, 2024

Out-of-bounds read in parsing textbox object in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

Out-of-bounds Read

Samsung Notes OOB Read in Connected Object List (4.4.21.62 and earlier)
CVE-2024-34634 3.3 - Low - August 07, 2024

Out-of-bounds read in parsing connected object list in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

Out-of-bounds Read

Samsung Notes <=4.4.21.62 OOB Read in UUID Parsing Allows Local Memory Leak
CVE-2024-34632 3.3 - Low - August 07, 2024

Out-of-bounds read in uuid parsing in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

Out-of-bounds Read

Samsung Notes <=4.4.21.62: OOB Read via Binary Update
CVE-2024-34631 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

OOB Read in Samsung Notes <4.4.21.62 Textbox Allows Local Memory Leak
CVE-2024-34630 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes <4.4.21.62: OOB Read in Binary Text Common Obj
CVE-2024-34629 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes 4.4.21.62 OOB Read via Binary Path (CVE202434628)
CVE-2024-34628 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes <4.4.21.62 OOB Read via Binary Apply
CVE-2024-34626 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes <=4.4.21.62 OOB Read via Connection Point - Local Exploit
CVE-2024-34625 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes OOB Read Prior to 4.4.21.62 in Apply Paragraphs
CVE-2024-34624 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes OOB write before v4.4.21.62 allows exec
CVE-2024-34623 7.8 - High - August 07, 2024

Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.

Memory Corruption

Samsung Notes OOB Write in Paragraph Append pre-4.4.21.62
CVE-2024-34622 7.8 - High - August 07, 2024

Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.

Memory Corruption

Samsung Notes 4.4.21.62 OOB Read via Binary Apply, Local Attack
CVE-2024-34621 5.5 - Medium - August 07, 2024

Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes OOB Read Prior to 4.4.21.62
CVE-2024-34627 5.5 - Medium - August 07, 2024

Out-of-bounds read in parsing implemention in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Out-of-bounds Read

Samsung Notes 4.4.15 - Local Input Validation Deletion (CVE-2024-20868)
CVE-2024-20868 7.1 - High - May 07, 2024

Improper input validation in Samsung Notes prior to version 4.4.15 allows local attackers to delete files with Samsung Notes privilege under certain conditions.

Path traversal in Samsung Notes UriFileUtils before 4.3.14.39
CVE-2022-36831 5.5 - Medium - August 05, 2022

Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.

Directory traversal

A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61
CVE-2021-25495 7.8 - High - October 06, 2021

A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.

Memory Corruption

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Samsung Notes or by Samsung? Click the Watch button to subscribe.

Samsung
Vendor

Samsung Notes
Product

subscribe