EIP-2026-100044

PRE-CVE

Samsung Devices KNOX Extensions - OTP Service Heap Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100044. PoCs published by Google Security Research.

AI-analyzed exploit summary This PoC exploits a heap-based buffer overflow in Samsung's 'otp_server' service by sending a maliciously crafted parcel with an invalid length field, causing a crash. The vulnerability arises from unvalidated input in the binder service, allowing arbitrary data to be copied into a heap buffer.

Description

Samsung Devices KNOX Extensions - OTP Service Heap Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by Google Security Research · javadosandroid
https://www.exploit-db.com/exploits/40913

This PoC exploits a heap-based buffer overflow in Samsung's 'otp_server' service by sending a maliciously crafted parcel with an invalid length field, causing a crash. The vulnerability arises from unvalidated input in the binder service, allowing arbitrary data to be copied into a heap buffer.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Samsung KNOX OTP service (otp_server)
No auth needed
Prerequisites: Access to a Samsung device with KNOX OTP service (e.g., SM-G925V)
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026