Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Filtered by product Android
Total 323 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-20860 1 Samsung 1 Android 2025-02-07 N/A 4.0 MEDIUM
Improper export of android application components vulnerability in TelephonyUI prior to SMR May-2024 Release 1 allows local attackers to reboot the device without proper permission.
CVE-2024-20856 1 Samsung 1 Android 2025-02-07 N/A 4.3 MEDIUM
Improper Authentication vulnerability in Secure Folder prior to SMR May-2024 Release 1 allows physical attackers to access Secure Folder without proper authentication in a specific scenario.
CVE-2024-20855 1 Samsung 1 Android 2025-02-07 N/A 2.4 LOW
Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attackers to access unlocked screen for a while.
CVE-2024-20844 1 Samsung 1 Android 2025-02-07 N/A 8.4 HIGH
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20845 1 Samsung 1 Android 2025-02-07 N/A 8.4 HIGH
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20846 1 Samsung 1 Android 2025-02-07 N/A 5.9 MEDIUM
Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20847 1 Samsung 1 Android 2025-02-07 N/A 4.0 MEDIUM
Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to read sdcard information.
CVE-2024-20848 1 Samsung 1 Android 2025-02-07 N/A 4.0 MEDIUM
Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2024-20849 1 Samsung 1 Android 2025-02-07 N/A 7.3 HIGH
Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2024-20842 1 Samsung 1 Android 2025-02-07 N/A 4.2 MEDIUM
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2024-20843 1 Samsung 1 Android 2025-02-07 N/A 5.6 MEDIUM
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.
CVE-2023-21492 1 Samsung 1 Android 2025-02-07 N/A 4.4 MEDIUM
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.
CVE-2023-21513 1 Samsung 1 Android 2024-12-05 N/A 6.1 MEDIUM
Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition.
CVE-2024-34603 1 Samsung 1 Android 2024-11-21 N/A 4.0 MEDIUM
Improper access control in Samsung Message prior to SMR Jul-2024 Release 1 allows local attackers to access location data.
CVE-2024-34602 1 Samsung 1 Android 2024-11-21 N/A 3.3 LOW
Use of implicit intent for sensitive communication in Samsung Messages prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.
CVE-2024-34595 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
CVE-2024-34594 1 Samsung 1 Android 2024-11-21 N/A 5.5 MEDIUM
Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.
CVE-2024-34593 1 Samsung 1 Android 2024-11-21 N/A 7.5 HIGH
Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.
CVE-2024-34592 1 Samsung 1 Android 2024-11-21 N/A 5.3 MEDIUM
Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.
CVE-2024-34591 1 Samsung 1 Android 2024-11-21 N/A 5.3 MEDIUM
Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.