CVE-2026-21038: Samsung Android USB Driver

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper input validation in Samsung Android USB Driver for Windows prior to version 1.9.5.0 allows local attacker to access out-of-bounds memory.

Affected products

  • Samsung Android USB Driver: before 1.9.5.0 (fixed in 1.9.5.0)

Published 2026-06-05. Last modified 2026-06-30.