What is CVE-2026-21059?
CVE-2026-21059 is a vulnerability in Samsung Contacts versions prior to SMR Aug-2026 Release 1, caused by improper export of Android application components. This flaw allows local attackers to delete files with Samsung Contacts' privilege. Users are advised to update to the SMR Aug-2026 Release 1 patch to mitigate the risk.
Azərbaycanca: CVE-2026-21059, Samsung Contacts tətbiqinin SMR Aug-2026 Release 1-dən əvvəlki versiyalarında Android komponentlərinin düzgün ixrac edilməməsi səbəbindən yerli hücumçulara Contacts-in imtiyazları ilə fayl silməyə imkan verən boşluqdur. Təsirə məruz qalan cihazlarda bu boşluq vasitəsilə zərərli şəxslər müəyyən faylları silə bilər. İstifadəçilərə təhlükəsizlik yamasını ehtiva edən SMR Aug-2026 Release 1 yeniləməsini tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-732
FAQ2
What could happen if I don't update my Samsung phone regarding CVE-2026-21059?
A malicious local attacker could delete files on your device using the privileges of Samsung Contacts.
How can I protect my device from CVE-2026-21059?
You should apply the SMR Aug-2026 Release 1 update, which includes the security patch.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.