CVE-2015-4034: Samsung Galaxy s5

High severity, CVSS 7.9. EPSS: 1.2% chance of exploitation in the next 30 days.

The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung Galaxy S5s allows remote attackers to execute arbitrary files via a crafted Parcelable object in a serialized MethodSpec object.

Affected products

  • Samsung Galaxy s5: affected versions not specified

Published 2015-07-06. Last modified 2026-06-17.