TROYANOSYVIRUS
Back to CVEs

CVE-2026-20989

LOW
2.4

Description

Improper verification of cryptographic signature in Font Settings prior to SMR Mar-2026 Release 1 allows physical attackers to use custom font.

CVE Details

CVSS v3.1 Score2.4
SeverityLOW
CVSS VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Attack VectorPHYSICAL
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published3/16/2026
Last Modified3/20/2026
Sourcenvd
Honeypot Sightings0

Affected Products

samsung:android

Weaknesses (CWE)

CWE-347

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.