Samsung Magician SSD software ‘High Severity’ vulnerability patched — upgrade to the newest v9.0.0 to prevent potential DLL hijacking and privilege escalation

Samsung Magician SSD software ‘High Severity’ vulnerability patched — upgrade to the newest v9.0.0 to prevent potential DLL hijacking and privilege escalation

As Samsung sells its storage devices into diverse consumer markets, it makes its Magician software available for platforms like Windows, macOS, and Android. CVE‑2025‑57836 affects only the Windows version of the software.

Follow Tom's Hardware on Google News , or add us as a preferred source , to get our latest news, analysis, & reviews in your feeds.

Mark Tyson Social Links Navigation News Editor Mark Tyson is a news editor at Tom's Hardware. He enjoys covering the full breadth of PC tech; from business and semiconductor design to products approaching the edge of reason.

Zaranthos Mostly only ever use the software to install firmware updates on Samsung SSD's, then I uninstall it. Probably wouldn't ever let stuff like this run on a corporate network either since it's pretty useless to the average user and just consumes resources running in the background. Reply

Gururu I got 9 a few months ago and I found the interface to be much nicer. No problems with the software and I use it mainly to monitor drive health. Reply

Aurn Unfortunately, version 9.0.0 does not work for me. Causes BSOD "Multiple IRP Complete Requests" at the end of installation. This happens on two PCs with completely different hardware, on Windows 11 and Windows 10. Version 8.3.2 does the same, so I had to stay on 8.2.0 (have not tried 8.3.0 and 8.3.1) Reply

BFG-9000 They should've never changed it to be a bloated Electron app. That launches a bundled version of Chromium just to render it, which goes outdated much more quickly than they update the app. The problem is browsers are updated all of the time for security threats, so everybody knows to reverse-engineer those updates to find vulnerabilities affecting only older versions of browsers. And Samsung has you use an embedded older browser because they don't update it often. I see the release notes for 9.0.0 only lists as changed: Enhanced User Convenience • Improved the UI/UX to enhance user convenience. Users can easily use various features with a more intuitive and streamlined screen. And now they have removed all previous versions for download, including the pre-Electron versions that wouldn't have this security issue Reply

Key considerations

  • Investor positioning can change fast
  • Volatility remains possible near catalysts
  • Macro rates and liquidity can dominate flows

Reference reading

More on this site

Informational only. No financial advice. Do your own research.

Leave a Comment