logo

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks

ID: c67bae88-d221-56a6-a243-b27e3c5b3643

STIX ID: report--c67bae88-d221-56a6-a243-b27e3c5b3643

Feed Name: CosmicBytez Labs

Threat Score
75/100

Date Published: 2026-06-23

Date Updated: 2026-06-24

...
...

**Use-After-Free in Samsung KNOX (Patched June 2026)** — A high-severity kernel use-after-free vulnerability in Samsung's proprietary KNOX security framework, present since ~2017, potentially impacted hundreds of millions of Galaxy devices from S9 through S25 and could allow kernel-level code execution if chained with local code execution. Samsung released a patch in the June 2026 Security Maintenance Release; the report outlines exploitation prerequisites, scope, mitigation steps for enterprises, and recommended MDM/attestation checks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.