7.3
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Description
Improper access control in Routines prior to version 4.8.7.1 in Android 15 and 4.9.6.0 in Android 16 allows local attackers to potentially execute arbitrary code with SystemUI privilege.
Basic Information
ID
CVE-2025-21058
Source
SamsungMobile
Published
Oct 10, 2025 at 06:33
Affected Product
Vendor
Samsung Mobile
Product
Routines
Version
4.8.7.1 in Android 15 and 4.9.6.0 in Android 16