samsung CVE Vulnerabilities & Metrics

Focus on samsung vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About samsung Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with samsung. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total samsung CVEs: 977
Earliest CVE date: 17 Jul 2001, 04:00 UTC
Latest CVE date: 04 Feb 2025, 08:15 UTC

Latest CVE reference: CVE-2025-20907

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 198

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): -100.0%
Year Variation (Calendar): -28.78%

Month Growth Rate (30-day Rolling): -100.0%
Year Growth Rate (365-day Rolling): -28.78%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical samsung CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 2.38

Max CVSS: 10.0

Critical CVEs (≥9): 85

CVSS Range vs. Count

Range Count
0.0-3.9 675
4.0-6.9 196
7.0-8.9 55
9.0-10.0 85

CVSS Distribution Chart

Top 5 Highest CVSS samsung CVEs

These are the five CVEs with the highest CVSS scores for samsung, sorted by severity first and recency.

All CVEs for samsung

CVE-2025-20907 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find.

CVE-2025-20905 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to read and write out-of-bounds memory.

CVE-2025-20904 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to cause memory corruption.

CVE-2025-20893 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Improper access control in NotificationManager prior to SMR Jan-2025 Release 1 allows local attackers to change the configuration of notifications.

CVE-2025-20892 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this vulnerability.

CVE-2025-20891 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVE-2025-20890 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVE-2025-20889 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVE-2025-20888 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVE-2025-20887 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVE-2025-20886 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Inclusion of sensitive information in test code in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to get test key.

CVE-2025-20885 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to cause memory corruption.

CVE-2025-20884 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Improper access control in Samsung Message prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.

CVE-2025-20883 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Improper access control in SoundPicker prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.

CVE-2025-20882 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in accessing uninitialized memory for svc1td in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVE-2025-20881 samsung vulnerability CVSS: 0 04 Feb 2025, 08:15 UTC

Out-of-bounds write in accessing buffer storing the decoded video frames in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVE-2024-49415 samsung vulnerability CVSS: 0 03 Dec 2024, 06:15 UTC

Out-of-bound write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code.

CVE-2024-49414 samsung vulnerability CVSS: 0 03 Dec 2024, 06:15 UTC

Authentication Bypass Using an Alternate Path in Dex Mode prior to SMR Dec-2024 Release 1 allows physical attackers to temporarily access to recent app list.

CVE-2024-49413 samsung vulnerability CVSS: 0 03 Dec 2024, 06:15 UTC

Improper Verification of Cryptographic Signature in SmartSwitch prior to SMR Dec-2024 Release 1 allows local attackers to install malicious applications.

CVE-2024-49411 samsung vulnerability CVSS: 0 03 Dec 2024, 06:15 UTC

Path Traversal in ThemeCenter prior to SMR Dec-2024 Release 1 allows physical attackers to copy apk files to arbitrary path with ThemeCenter privilege.

CVE-2024-49410 samsung vulnerability CVSS: 0 03 Dec 2024, 06:15 UTC

Out-of-bounds write in libswmfextractor.so prior to SMR Dec-2024 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-49406 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper validation of integrity check value in Blockchain Keystore prior to version 1.3.16 allows local attackers to modify transaction. Root privilege is required for triggering this vulnerability.

CVE-2024-49405 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper authentication in Private Info in Samsung Pass in prior to version 4.4.04.7 allows physical attackers to access sensitive information in a specific scenario.

CVE-2024-49404 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper Access Control in Samsung Video Player prior to versions 7.3.29.1 in Android 12, 7.3.36.1 in Android 13, and 7.3.41.230 in Android 14 allows physical attackers to access video file of other users.

CVE-2024-49402 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper input validation in Dressroom prior to SMR Nov-2024 Release 1 allow physical attackers to access data across multiple user profiles.

CVE-2024-49401 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper input validation in Settings Suggestions prior to SMR Nov-2024 Release 1 allows local attackers to launch privileged activities.

CVE-2024-34682 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper authorization in Settings prior to SMR Nov-2024 Release 1 allows physical attackers to access stored WiFi password in Maintenance Mode.

CVE-2024-34680 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Use of implicit intent for sensitive communication in WlanTest prior to SMR Nov-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-34679 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Incorrect default permissions in Crane prior to SMR Nov-2024 Release 1 allows local attackers to access files with phone privilege.

CVE-2024-34678 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Out-of-bounds write in libsapeextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption.

CVE-2024-34677 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate.

CVE-2024-34676 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Out-of-bounds write in parsing subtitle file in libsubextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption. User interaction is required for triggering this vulnerability.

CVE-2024-34675 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper access control in Dex Mode prior to SMR Nov-2024 Release 1 allows physical attackers to temporarily access to unlocked screen.

CVE-2024-34674 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper access control in Contacts prior to SMR Nov-2024 Release 1 allows physical attackers to access data across multiple user profiles.

CVE-2024-34673 samsung vulnerability CVSS: 0 06 Nov 2024, 03:15 UTC

Improper Input Validation in IpcProtocol in Modem prior to SMR Nov-2024 Release 1 allows local attackers to cause Denial-of-Service.

CVE-2024-34669 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Out-of-bounds write in parsing h.263+ format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34668 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Out-of-bounds write in parsing h.263 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34667 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Out-of-bounds write in parsing h.265 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34666 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Out-of-bounds write in parsing h.264 format in a specific mode in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34665 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Out-of-bounds write in parsing h.264 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34662 samsung vulnerability CVSS: 0 08 Oct 2024, 07:15 UTC

Improper access control in ActivityManager prior to SMR Oct-2024 Release 1 in select Android 12, 13 and SMR Sep-2024 Release 1 in select Android 14 allows local attackers to execute privileged behaviors.

CVE-2024-5760 samsung vulnerability CVSS: 0 11 Sep 2024, 16:15 UTC

The Samsung Universal Print Driver for Windows is potentially vulnerable to escalation of privilege allowing the creation of a reverse shell in the tool. This is only applicable for products in the application released or manufactured before 2018.

CVE-2024-31960 samsung vulnerability CVSS: 0 10 Sep 2024, 16:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 1480, Exynos 2400. The xclipse amdgpu driver has a reference count bug. This can lead to a use after free.

CVE-2024-27365 samsung vulnerability CVSS: 0 09 Sep 2024, 21:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_blockack_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

CVE-2024-27387 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_done_ind(), there is no input validation check on rtt_id coming from userspace, which can lead to a heap overwrite.

CVE-2024-27383 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_extra_ies(), there is no input validation check on default_ies coming from userspace, which can lead to a heap overwrite.

CVE-2024-27368 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_received_frame_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

CVE-2024-27367 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_ind(), there is no input validation check on a length coming from userspace, which can lead to integer overflow and a potential heap over-read.

CVE-2024-27366 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_done_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

CVE-2024-27364 samsung vulnerability CVSS: 0 09 Sep 2024, 20:15 UTC

An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_roamed_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

CVE-2024-34660 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.

CVE-2024-34659 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Exposure of sensitive information in GroupSharing prior to version 13.6.13.3 allows remote attackers can force the victim to join the group.

CVE-2024-34658 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.

CVE-2024-34657 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.

CVE-2024-34656 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.

CVE-2024-34655 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to access privileged API related to UniversalCredentialManager.

CVE-2024-34654 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper Export of android application component in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access files with My Files' privilege.

CVE-2024-34653 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Path Traversal in My Files prior to SMR Sep-2024 Release 1 allows physical attackers to access directories with My Files' privilege.

CVE-2024-34652 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related to performance including app usage.

CVE-2024-34651 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper authorization in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access restricted data in My Files.

CVE-2024-34650 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to Edge panel.

CVE-2024-34649 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access an unlocked screen.

CVE-2024-34648 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1 allows local attackers to access sensitive data.

CVE-2024-34647 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Incorrect use of privileged API in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to knox without proper license.

CVE-2024-34646 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to cause local permanent denial of service.

CVE-2024-34645 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper input validation in ThemeCenter prior to SMR Sep-2024 Release 1 allows physical attackers to install privileged applications.

CVE-2024-34644 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control in item selection related in Dressroom prior to SMR Sep-2024 Release 1 allows local attackers to access protected data. User interaction is required for triggering this vulnerability.

CVE-2024-34643 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control in key input related function in Dressroom prior to SMR Sep-2024 Release 1 allows local attackers to access protected data. User interaction is required for triggering this vulnerability.

CVE-2024-34642 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper authorization in One UI Home prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access sensitive information.

CVE-2024-34641 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper Export of Android Application Components in FeliCaTest prior to SMR Sep-2024 Release 1 allows local attackers to enable NFC configuration.

CVE-2024-34640 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control vulnerability in BGProtectManager prior to SMR Sep-2024 Release 1 allows local attackers to bypass restriction of process expiration.

CVE-2024-34639 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper handling of exceptional conditions in Setupwizard prior to SMR Aug-2024 Release 1 allows physical attackers to bypass proper validation.

CVE-2024-34638 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper handling of exceptional conditions in ThemeCenter prior to SMR Sep-2024 Release 1 allows local attackers to delete non-preloaded applications.

CVE-2024-34637 samsung vulnerability CVSS: 0 04 Sep 2024, 06:15 UTC

Improper access control in WindowManagerService prior to SMR Sep-2024 Release 1 in Android 12, and SMR Jun-2024 Release 1 in Android 13 and Android 14 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34636 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Use of implicit intent for sensitive communication in Samsung Email prior to version 6.1.94.2 allows local attackers to get sensitive information.

CVE-2024-34635 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in parsing textbox object in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

CVE-2024-34634 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in parsing connected object list in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

CVE-2024-34633 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in parsing object header in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

CVE-2024-34632 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in uuid parsing in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.

CVE-2024-34631 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34630 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34629 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34628 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34627 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in parsing implemention in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34626 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34625 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34624 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34623 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.

CVE-2024-34622 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.

CVE-2024-34621 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

CVE-2024-34620 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.

CVE-2024-34619 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34618 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.

CVE-2024-34617 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.

CVE-2024-34616 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.

CVE-2024-34615 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.

CVE-2024-34614 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-34613 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in Galaxy Watch prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive information of Galaxy watch.

CVE-2024-34612 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-34611 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-34610 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in ExtControlDeviceService prior to SMR Aug-2024 Release 1 allows local attackers to access protected data.

CVE-2024-34609 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in VoiceNoteService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34608 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in PaymentManagerService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34607 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in SamsungNotesService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34606 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34605 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in SamsungHealthService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-34604 samsung vulnerability CVSS: 0 07 Aug 2024, 02:15 UTC

Improper access control in LedCoverService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVE-2024-32671 samsung vulnerability CVSS: 0 29 Jul 2024, 03:15 UTC

Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This issue affects Escargot: 4.0.0.

CVE-2024-31957 samsung vulnerability CVSS: 0 09 Jul 2024, 18:15 UTC

A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the validation of native handles, which can result in a DoS(Denial of Service) attack by unmapping an invalid length.

CVE-2024-28067 samsung vulnerability CVSS: 0 09 Jul 2024, 18:15 UTC

A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode of packets going to the victim, enabling the attacker to send messages to the victim in plaintext.

CVE-2024-27362 samsung vulnerability CVSS: 0 09 Jul 2024, 18:15 UTC

A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exynos 2400 where they do not properly check the length of the data, which can lead to a Information disclosure.

CVE-2024-27360 samsung vulnerability CVSS: 0 09 Jul 2024, 18:15 UTC

A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, and Exynos W930 where they do not properly check length of the data, which can lead to a Denial of Service.

CVE-2024-34603 samsung vulnerability CVSS: 0 08 Jul 2024, 07:15 UTC

Improper access control in Samsung Message prior to SMR Jul-2024 Release 1 allows local attackers to access location data.

CVE-2024-34602 samsung vulnerability CVSS: 0 08 Jul 2024, 07:15 UTC

Use of implicit intent for sensitive communication in Samsung Messages prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.

CVE-2024-34601 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launch unexported activities of GalaxyStore.

CVE-2024-34597 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.

CVE-2024-34596 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for members set by the owner.

CVE-2024-34595 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

CVE-2024-34594 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.

CVE-2024-34593 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34592 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

CVE-2024-34591 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

CVE-2024-34590 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

CVE-2024-34589 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

CVE-2024-34588 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

CVE-2024-34587 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-34586 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.

CVE-2024-34585 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

CVE-2024-34583 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifier.

CVE-2024-20901 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds memory.

CVE-2024-20900 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.

CVE-2024-20899 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-20898 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-20897 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-20896 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-20895 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.

CVE-2024-20894 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers to bypass authentication under certain condition. User interaction is required for triggering this vulnerability.

CVE-2024-20893 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption.

CVE-2024-20892 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors. User interaction is required for triggering this vulnerability.

CVE-2024-20891 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

CVE-2024-20890 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior.

CVE-2024-20889 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices.

CVE-2024-20888 samsung vulnerability CVSS: 0 02 Jul 2024, 10:15 UTC

Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.

CVE-2024-32504 samsung vulnerability CVSS: 0 13 Jun 2024, 17:15 UTC

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper length checking, which can result in an OOB (Out-of-Bounds) Write vulnerability.

CVE-2024-31956 samsung vulnerability CVSS: 0 13 Jun 2024, 17:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Exynos 2400. It lacks proper buffer length checking, which can result in an Out-of-Bounds Write.

CVE-2024-32503 samsung vulnerability CVSS: 0 07 Jun 2024, 16:15 UTC

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper memory deallocation checking, which can result in a UAF (Use-After-Free) vulnerability.

CVE-2024-28818 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 2400, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check states specified by the RRC (Radio Resource Control) module. This can lead to disclosure of sensitive information.

CVE-2024-27382 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_send_action_frame(), there is no input validation check on len coming from userspace, which can lead to a heap over-read.

CVE-2024-27381 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_send_action_frame_ut(), there is no input validation check on len coming from userspace, which can lead to a heap over-read.

CVE-2024-27380 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_set_delayed_wakeup_type(), there is no input validation check on a length of ioctl_args->args[i] coming from userspace, which can lead to a heap over-read.

CVE-2024-27379 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_subscribe_get_nl_params(), there is no input validation check on hal_req->num_intf_addr_present coming from userspace, which can lead to a heap overwrite.

CVE-2024-27378 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_send_action_frame_cert(), there is no input validation check on len coming from userspace, which can lead to a heap over-read.

CVE-2024-27377 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_get_security_info_nl(), there is no input validation check on sec_info->key_info.body.pmk_info.pmk_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27376 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_subscribe_get_nl_params(), there is no input validation check on hal_req->rx_match_filter_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27375 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_followup_get_nl_params(), there is no input validation check on hal_req->sdea_service_specific_info_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27374 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_publish_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27373 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_config_get_nl_params(), there is no input validation check on disc_attr->mesh_id_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27372 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_config_get_nl_params(), there is no input validation check on disc_attr->infrastructure_ssid_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27371 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_followup_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite.

CVE-2024-27370 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_config_get_nl_params(), there is no input validation check on hal_req->num_config_discovery_attr coming from userspace, which can lead to a heap overwrite.

CVE-2023-50804 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor, and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the NAS (Non-Access-Stratum) module. This can lead to bypass of authentication.

CVE-2023-50803 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor, and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check replay protection specified by the NAS (Non-Access-Stratum) module. This can lead to denial of service.

CVE-2023-49928 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check states specified by the RRC. This can lead to disclosure of sensitive information.

CVE-2023-49927 samsung vulnerability CVSS: 0 05 Jun 2024, 19:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the RRC. This can lead to a lack of encryption.

CVE-2024-29152 samsung vulnerability CVSS: 0 04 Jun 2024, 19:19 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 2400, Exynos Modem 5123, and Exynos Modem 5300. The baseband software does not properly check states specified by the RRC (Radio Resource Control) Reconfiguration message. This can lead to disclosure of sensitive information.

CVE-2024-20885 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper component protection vulnerability in Samsung Dialer prior to SMR May-2024 Release 1 allows local attackers to make a call without proper permission.

CVE-2024-20884 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.

CVE-2024-20883 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.

CVE-2024-20882 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary data access.

CVE-2024-20881 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper input validation vulnerability in chnactiv TA prior to SMR Jun-2024 Release 1 allows local privileged attackers lead to potential arbitrary code execution.

CVE-2024-20880 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows physical attackers to overwrite memory.

CVE-2024-20879 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper input validation vulnerability in libsavscmn.so prior to SMR Jun-2024 Release 1 allows local attackers to write out-of-bounds memory.

CVE-2024-20878 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Heap out-of-bound write vulnerability in parsing grid image in libsavscmn.so prior to SMR June-2024 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-20877 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Heap out-of-bound write vulnerability in parsing grid image header in libsavscmn.so prior to SMR Jun-2024 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-20876 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper input validation in libsheifdecadapter.so prior to SMR Jun-2024 Release 1 allows local attackers to lead to memory corruption.

CVE-2024-20875 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper caller verification vulnerability in SemClipboard prior to SMR June-2024 Release 1 allows local attackers to access arbitrary files.

CVE-2024-20874 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper access control vulnerability in SmartManagerCN prior to SMR Jun-2024 Release 1 allows local attackers to launch privileged activities.

CVE-2024-20873 samsung vulnerability CVSS: 0 04 Jun 2024, 07:15 UTC

Improper input validation vulnerability in caminfo driver prior to SMR Jun-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.

CVE-2024-20866 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step.

CVE-2024-20865 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images.

CVE-2024-20864 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to monitor system resources.

CVE-2024-20863 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

CVE-2024-20862 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

CVE-2024-20861 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause memory corruption.

CVE-2024-20860 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper export of android application components vulnerability in TelephonyUI prior to SMR May-2024 Release 1 allows local attackers to reboot the device without proper permission.

CVE-2024-20859 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pictures without privilege.

CVE-2024-20858 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.

CVE-2024-20857 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.

CVE-2024-20856 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper Authentication vulnerability in Secure Folder prior to SMR May-2024 Release 1 allows physical attackers to access Secure Folder without proper authentication in a specific scenario.

CVE-2024-20855 samsung vulnerability CVSS: 0 07 May 2024, 05:15 UTC

Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attackers to access unlocked screen for a while.

CVE-2024-20849 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2024-20848 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release 1 allows local attackers to write out-of-bounds memory.

CVE-2024-20847 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to read sdcard information.

CVE-2024-20846 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

CVE-2024-20845 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

CVE-2024-20844 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

CVE-2024-20843 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.

CVE-2024-20842 samsung vulnerability CVSS: 0 02 Apr 2024, 03:15 UTC

Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.

CVE-2024-20833 samsung vulnerability CVSS: 0 05 Mar 2024, 08:15 UTC

Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privilege to cause memory corruption.

CVE-2024-20841 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.

CVE-2024-20840 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers using hardware keyboard to use VoiceRecorder on the lock screen.

CVE-2024-20838 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.

CVE-2024-20837 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.

CVE-2024-20836 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024 Release 1 allows local attackers to read out of bounds memory.

CVE-2024-20835 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local attackers to execute privileged behaviors.

CVE-2024-20834 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission.

CVE-2024-20832 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.

CVE-2024-20831 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Stack overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.

CVE-2024-20830 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.

CVE-2024-20829 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers to open an application without proper interaction.

CVE-2023-52432 samsung vulnerability CVSS: 0 05 Mar 2024, 05:15 UTC

Improper input validation in IpcTxSndSetLoopbackCtrl in libsec-ril prior to SMR Sep-2023 Release 1 allows local attackers to write out-of-bounds memory.

CVE-2024-23769 samsung vulnerability CVSS: 0 07 Feb 2024, 19:15 UTC

Improper privilege control for the named pipe in Samsung Magician PC Software 8.0.0 (for Windows) allows a local attacker to read privileged data.

CVE-2024-20828 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication.

CVE-2024-20827 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper access control vulnerability in Samsung Gallery prior to version 14.5.04.4 allows physical attackers to access the picture using physical keyboard on the lockscreen.

CVE-2024-20826 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in UPHelper library prior to version 4.0.0 allows local attackers to access sensitive information via implicit intent.

CVE-2024-20825 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.

CVE-2024-20824 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.

CVE-2024-20823 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.

CVE-2024-20822 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.

CVE-2024-20820 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Out-Of-Bounds read.

CVE-2024-20819 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

CVE-2024-20818 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

CVE-2024-20817 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

CVE-2024-20816 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.

CVE-2024-20815 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.

CVE-2024-20814 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Read in padmd_vld_ac_prog_refine of libpadm.so prior to SMR Feb-2024 Release 1 allows local attackers access unauthorized information.

CVE-2024-20813 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.

CVE-2024-20812 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.

CVE-2024-20811 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Improper caller verification in GameOptimizer prior to SMR Feb-2024 Release 1 allows local attackers to configure GameOptimizer.

CVE-2024-20810 samsung vulnerability CVSS: 0 06 Feb 2024, 03:15 UTC

Implicit intent hijacking vulnerability in Smart Suggestions prior to SMR Feb-2024 Release 1 allows local attackers to get sensitive information.

CVE-2024-20809 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.

CVE-2024-20808 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.

CVE-2024-20807 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Implicit intent hijacking vulnerability in Samsung Email prior to version 6.1.90.16 allows local attacker to get sensitive information.

CVE-2024-20806 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Improper access control in Notification service prior to SMR Jan-2024 Release 1 allows local attacker to access notification data.

CVE-2024-20805 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.

CVE-2024-20804 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Path traversal vulnerability in FileUriConverter of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.

CVE-2024-20803 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing process without user interaction.

CVE-2024-20802 samsung vulnerability CVSS: 0 04 Jan 2024, 01:15 UTC

Improper access control vulnerability in Samsung DeX prior to SMR Jan-2024 Release 1 allows owner to access other users' notification in a multi-user environment.

CVE-2023-45864 samsung vulnerability CVSS: 0 13 Dec 2023, 01:15 UTC

A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200, 1280, and 1380 allows unintended modifications of values within certain areas.

CVE-2023-43122 samsung vulnerability CVSS: 0 13 Dec 2023, 01:15 UTC

Samsung Mobile Processor and Wearable Processor (Exynos 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, and W920) allow Information Disclosure in the Bootloader.

CVE-2023-42483 samsung vulnerability CVSS: 0 13 Dec 2023, 01:15 UTC

A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, and Exynos 1380 can cause unexpected termination of a system.

CVE-2023-41268 samsung vulnerability CVSS: 0 06 Dec 2023, 04:15 UTC

Improper input validation vulnerability in Samsung Open Source Escargot allows stack overflow and segmentation fault. This issue affects Escargot: from 3.0.0 through 4.0.0.

CVE-2023-42581 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data.

CVE-2023-42580 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK from Galaxy Store.

CVE-2023-42579 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in Android 11, 5.4.60.49, 5.4.85.5, 5.5.00.58 in Android 12, and 5.6.00.52, 5.6.10.42, 5.7.00.45 in Android 13 allows adjacent attackers to access keystroke data using Man-in-the-Middle attack.

CVE-2023-42578 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.

CVE-2023-42577 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper Access Control in Samsung Voice Recorder prior to versions 21.4.15.01 in Android 12 and Android 13, 21.4.50.17 in Android 14 allows physical attackers to access Voice Recorder information on the lock screen.

CVE-2023-42576 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.

CVE-2023-42575 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.

CVE-2023-42574 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrary activity in GameHomeCN.

CVE-2023-42573 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

PendingIntent hijacking vulnerability in Search Widget prior to version 3.4 in China models allows local attackers to access data.

CVE-2023-42572 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Implicit intent hijacking vulnerability in Samsung Account Web SDK prior to version 1.5.24 allows attacker to get sensitive information.

CVE-2023-42571 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.

CVE-2023-42570 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to access device SIM PIN.

CVE-2023-42569 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.

CVE-2023-42568 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.

CVE-2023-42567 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.

CVE-2023-42566 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-42565 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell privilege to execute arbitrary code.

CVE-2023-42564 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper access control in knoxcustom service prior to SMR Dec-2023 Release 1 allows attacker to send broadcast with system privilege.

CVE-2023-42563 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.

CVE-2023-42562 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Integer overflow vulnerability in detectionFindFaceSupportMultiInstance of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.

CVE-2023-42561 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Heap out-of-bounds write vulnerability in bootloader prior to SMR Dec-2023 Release 1 allows a physical attacker to execute arbitrary code.

CVE-2023-42560 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Heap out-of-bounds write vulnerability in dec_mono_audb of libsavsac.so prior to SMR Dec-2023 Release 1 allows an attacker to execute arbitrary code.

CVE-2023-42559 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper exception management vulnerability in Knox Guard prior to SMR Dec-2023 Release 1 allows Knox Guard lock bypass via changing system time.

CVE-2023-42558 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Out of bounds write vulnerability in HDCP in HAL prior to SMR Dec-2023 Release 1 allows attacker to perform code execution.

CVE-2023-42557 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Out-of-bound write vulnerability in libIfaaCa prior to SMR Dec-2023 Release 1 allows local system attackers to execute arbitrary code.

CVE-2023-42556 samsung vulnerability CVSS: 0 05 Dec 2023, 03:15 UTC

Improper usage of implicit intent in Contacts prior to SMR Dec-2023 Release 1 allows attacker to get sensitive information.

CVE-2023-41112 samsung vulnerability CVSS: 0 08 Nov 2023, 08:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123). A buffer copy, without checking the size of the input, can cause abnormal termination of a mobile phone. This occurs in the RLC task and RLC module.

CVE-2023-41111 samsung vulnerability CVSS: 0 08 Nov 2023, 08:15 UTC

An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123). Improper handling of a length parameter inconsistency can cause abnormal termination of a mobile phone. This occurs in the RLC task and RLC module.

CVE-2023-41270 samsung vulnerability CVSS: 0 08 Nov 2023, 07:15 UTC

Improper Restriction of Excessive Authentication Attempts vulnerability in Samsung Smart TV UE40D7000 version T-GAPDEUC-1033.2 and before allows attackers to cause a denial of service via WPS attack tools.

CVE-2023-42555 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.

CVE-2023-42554 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.

CVE-2023-42553 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4 allows attackers to read sandbox data of email.

CVE-2023-42552 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Implicit intent hijacking vulnerability in Firewall application prior to versions 12.1.00.24 in Android 11, 13.1.00.16 in Android 12 and 14.1.00.7 in Android 13 allows 3rd party application to tamper the database of Firewall.

CVE-2023-42551 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42550 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42549 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42548 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42547 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42546 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

CVE-2023-42545 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Use of implicit intent for sensitive communication vulnerability in Phone prior to versions 12.7.20.12 in Android 11, 13.1.48, 13.5.28 in Android 12, and 14.7.38 in Android 13 allows attackers to access location data.

CVE-2023-42544 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files.

CVE-2023-42543 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arbitrary data with Bixby Voice privilege.

CVE-2023-42540 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive information via implicit intent.

CVE-2023-42539 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows local attackers to access data.

CVE-2023-42538 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

CVE-2023-42537 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

CVE-2023-42536 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

CVE-2023-42535 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-42534 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper input validation vulnerability in ChooserActivity prior to SMR Nov-2023 Release 1 allows local attackers to read arbitrary files with system privilege.

CVE-2023-42533 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper Input Validation with USB Gadget Interface prior to SMR Nov-2023 Release 1 allows a physical attacker to execute arbitrary code in Kernel.

CVE-2023-42532 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the network traffic including Firmware information.

CVE-2023-42531 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper access control vulnerability in SmsController prior to SMR Nov-2023 Release1 allows local attackers to bypass restrictions on starting activities from the background.

CVE-2023-42530 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi and Wi-Fi Direct without User Interaction.

CVE-2023-42529 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-42528 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-42527 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Improper input validation vulnerability in ProcessWriteFile of libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to expose sensitive information.

CVE-2023-30739 samsung vulnerability CVSS: 0 07 Nov 2023, 08:15 UTC

Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30737 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.

CVE-2023-30735 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access backup data in SAssistant.

CVE-2023-30734 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.

CVE-2023-30733 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.

CVE-2023-30732 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial number.

CVE-2023-30731 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.

CVE-2023-30727 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper access control vulnerability in SecSettings prior to SMR Oct-2023 Release 1 allows attackers to enable Wi-Fi and connect arbitrary Wi-Fi without User Interaction.

CVE-2023-30692 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30690 samsung vulnerability CVSS: 0 04 Oct 2023, 04:15 UTC

Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-41911 samsung vulnerability CVSS: 0 28 Sep 2023, 21:15 UTC

Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).

CVE-2023-42482 samsung vulnerability CVSS: 0 21 Sep 2023, 20:15 UTC

Samsung Mobile Processor Exynos 2200 allows a GPU Use After Free.

CVE-2023-41929 samsung vulnerability CVSS: 0 18 Sep 2023, 12:15 UTC

A DLL hijacking vulnerability in Samsung Memory Card & UFD Authentication Utility PC Software before 1.0.1 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows to exploit this vulnerability.)

CVE-2023-40218 samsung vulnerability CVSS: 0 12 Sep 2023, 15:15 UTC

An issue was discovered in the NPU kernel driver in Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, and 1380. An integer overflow can bypass detection of error cases via a crafted application.

CVE-2023-40353 samsung vulnerability CVSS: 0 08 Sep 2023, 03:15 UTC

An issue was discovered in Exynos Mobile Processor 980 and 2100. An integer overflow at a buffer index can prevent the execution of requested services via a crafted application.

CVE-2023-37377 samsung vulnerability CVSS: 0 08 Sep 2023, 03:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause incorrect packet filtering.

CVE-2023-37368 samsung vulnerability CVSS: 0 08 Sep 2023, 03:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos Mobile Processor, Automotive Processor, and Modem - Exynos 9810, Exynos 9610, Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123). In the Shannon MM Task, Missing validation of a NULL pointer can cause abnormal termination via a malformed NR MM packet.

CVE-2023-37367 samsung vulnerability CVSS: 0 08 Sep 2023, 03:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. In the NAS Task, an improperly implemented security check for standard can disallow desired services for a while via consecutive NAS messages.

CVE-2023-30730 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Implicit intent hijacking vulnerability in Camera prior to versions 11.0.16.43 in Android 11, 12.1.00.30, 12.0.07.53, 12.1.03.10 in Android 12, and 13.0.01.43, 13.1.00.83 in Android 13 allows local attacker to access specific file.

CVE-2023-30729 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper Certificate Validation in Samsung Email prior to version 6.1.82.0 allows remote attacker to intercept the network traffic including sensitive information.

CVE-2023-30728 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Intent redirection vulnerability in PackageInstallerCHN prior to version 13.1.03.00 allows local attacker to access arbitrary file. This vulnerability requires user interaction.

CVE-2023-30726 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

PendingIntent hijacking vulnerability in GameLauncher prior to version 4.2.59.5 allows local attackers to access data.

CVE-2023-30725 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authentication in LocalProvier of Gallery prior to version 14.5.01.2 allows attacker to access the data in content provider.

CVE-2023-30724 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authentication in GallerySearchProvider of Gallery prior to version 14.5.01.2 allows attacker to access search history.

CVE-2023-30723 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper input validation vulnerability in Samsung Health prior to version 6.24.2.011 allows attackers to write arbitrary file with Samsung Health privilege.

CVE-2023-30722 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Protection Mechanism Failure in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.13.5 allows local attacker to execute arbitrary code.

CVE-2023-30721 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Insertion of sensitive information into log vulnerability in Locksettings prior to SMR Sep-2023 Release 1 allows a privileged local attacker to get lock screen match information from the log.

CVE-2023-30720 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

PendingIntent hijacking in LmsAssemblyTrackerCTC prior to SMR Sep-2023 Release 1 allows local attacker to gain arbitrary file access.

CVE-2023-30719 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Exposure of Sensitive Information vulnerability in InboundSmsHandler prior to SMR Sep-2023 Release 1 allows local attackers to access certain message data.

CVE-2023-30718 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper export of android application components vulnerability in WifiApAutoHotspotEnablingActivity prior to SMR Sep-2023 Release 1 allows local attacker to change a Auto Hotspot setting.

CVE-2023-30717 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Sensitive information exposure vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to get unresettable identifiers.

CVE-2023-30716 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper access control vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to trigger certain commands.

CVE-2023-30715 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper access control vulnerability in Weather prior to SMR Sep-2023 Release 1 allows attackers to access location information set in Weather without permission.

CVE-2023-30714 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authorization vulnerability in FolderContainerDragDelegate in One UI Home prior to SMR Sep-2023 Release 1 allows physical attackers to change some settings of the folder lock.

CVE-2023-30713 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change some settings of the folder lock.

CVE-2023-30712 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.

CVE-2023-30711 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authentication in Phone and Messaging Storage SMR SEP-2023 Release 1 allows attacker to insert arbitrary data to the provider.

CVE-2023-30710 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper input validation vulnerability in Knox AI prior to SMR Sep-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30709 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper access control in Dual Messenger prior to SMR Sep-2023 Release 1 allows local attackers launch activity with system privilege.

CVE-2023-30708 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authentication in SecSettings prior to SMR Sep-2023 Release 1 allows attacker to access Captive Portal Wi-Fi in Reactivation Lock status.

CVE-2023-30707 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper input validation vulnerability in FileProviderStatusReceiver in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows local attackers to delete arbitrary files with Samsung Keyboard privilege.

CVE-2023-30706 samsung vulnerability CVSS: 0 06 Sep 2023, 04:15 UTC

Improper authorization in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows attacker to read arbitrary file with system privilege.

CVE-2023-36481 samsung vulnerability CVSS: 0 28 Aug 2023, 12:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, and W920. Improper handling of PPP length parameter inconsistency can cause an infinite loop.

CVE-2021-35309 samsung vulnerability CVSS: 0 22 Aug 2023, 19:16 UTC

An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MITM attacks.

CVE-2020-22181 samsung vulnerability CVSS: 0 22 Aug 2023, 19:16 UTC

A reflected cross site scripting (XSS) vulnerability was discovered on Samsung sww-3400rw Router devices via the m2 parameter of the sess-bin/command.cgi

CVE-2022-4894 samsung vulnerability CVSS: 0 16 Aug 2023, 21:15 UTC

Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontrolled Search Path Element.

CVE-2023-40293 samsung vulnerability CVSS: 0 14 Aug 2023, 04:15 UTC

Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection object.

CVE-2023-40292 samsung vulnerability CVSS: 0 14 Aug 2023, 04:15 UTC

Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets.

CVE-2023-40291 samsung vulnerability CVSS: 0 14 Aug 2023, 04:15 UTC

Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an internal project name.

CVE-2023-30705 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.56.6?allows local attackers to access privileged content providers as Galaxy Store permission.

CVE-2023-30704 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication.

CVE-2023-30703 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper URL validation vulnerability in Samsung Members prior to version 14.0.07.1 allows attackers to access sensitive information.

CVE-2023-30702 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.

CVE-2023-30701 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access.

CVE-2023-30700 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.

CVE-2023-30699 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attackers.

CVE-2023-30698 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege.

CVE-2023-30697 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

CVE-2023-30696 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

CVE-2023-30695 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.

CVE-2023-30694 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30693 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30691 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to privilege escalation.

CVE-2023-30689 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30688 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30687 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30686 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30685 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control vulnerability in Telecom prior to SMR Aug-2023 Release 1 allows local attakcers to change TTY mode.

CVE-2023-30684 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call acceptRingingCall API without permission.

CVE-2023-30683 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call endCall API without permission.

CVE-2023-30682 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call silenceRinger API without permission.

CVE-2023-30681 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

CVE-2023-30680 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper privilege management vulnerability in MMIGroup prior to SMR Aug-2023 Release 1 allows code execution with privilege.

CVE-2023-30679 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control in HDCP trustlet prior to SMR Aug-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-30654 samsung vulnerability CVSS: 0 10 Aug 2023, 02:15 UTC

Improper access control vulnerability in SLocationService prior to SMR Aug-2023 Release 1 allows local attacker to update fake location.

CVE-2023-36482 samsung vulnerability CVSS: 0 08 Aug 2023, 20:15 UTC

An issue was discovered in Samsung NFC S3NRN4V, S3NSN4V, S3NSEN4, SEN82AB, and S3NRN82. A buffer copy without checking its input size can cause an NFC service restart.

CVE-2023-38523 samsung vulnerability CVSS: 0 20 Jul 2023, 19:15 UTC

The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, without authentication, exposing sensitive information such as the command history and screenshot of the file being processed. This affects N-Series N1115 Wallplate Video Encoder before 1.15.61, N-Series N1x22A Video Encoder/Decoder before 1.15.61, N-Series N1x33A Video Encoder/Decoder before 1.15.61, N-Series N1x33 Video Encoder/Decoder before 1.15.61, N-Series N2x35 Video Encoder/Decoder before 1.15.61, N-Series N2x35A Video Encoder/Decoder before 1.15.61, N-Series N2xx2 Video Encoder/Decoder before 1.15.61, N-Series N2xx2A Video Encoder/Decoder before 1.15.61, N-Series N3000 Video Encoder/Decoder before 2.12.105, and N-Series N4321 Audio Transceiver before 1.00.06.

CVE-2023-30678 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Potential zip path traversal vulnerability in Calendar application prior to version 12.4.07.15 in Android 13 allows attackers to write arbitrary file.

CVE-2023-30677 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass on a certain state of an unlocked device.

CVE-2023-30676 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass.

CVE-2023-30675 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed.

CVE-2023-30674 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper configuration in Samsung Internet prior to version 21.0.0.41 allows attacker to bypass SameSite Cookie.

CVE-2023-30673 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.23052_1 allows local attackers to delete arbitrary directory using directory junction.

CVE-2023-30672 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper privilege management vulnerability in Samsung Smart Switch for Windows Installer prior to version 4.3.23043_3 allows attackers to cause permanent DoS via directory junction.

CVE-2023-30671 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local attackers to downgrade installed application.

CVE-2023-30670 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30669 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30668 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.

CVE-2023-30667 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker to send broadcast with system privilege.

CVE-2023-30666 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.

CVE-2023-30665 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in OnOemServiceMode in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds read.

CVE-2023-30664 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in RegisteredMSISDN prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30663 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in OemPersonalizationSetLock in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.

CVE-2023-30662 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Exposure of Sensitive Information vulnerability in getChipIds in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

CVE-2023-30661 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Exposure of Sensitive Information vulnerability in getChipInfos in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

CVE-2023-30660 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Exposure of Sensitive Information vulnerability in getDefaultChipId in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

CVE-2023-30659 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in Transaction prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30658 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in DataProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30657 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30656 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in LSOItemData prior to SMR Jul-2023 Release 1 allows attackers to launch certain activities.

CVE-2023-30655 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper input validation vulnerability in SCEPProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

CVE-2023-30653 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out of bounds read and write in enableTspDevice of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-30652 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out of bounds read and write in callrunTspCmdNoRead of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-30651 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out of bounds read and write in callgetTspsysfs of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-30650 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Out of bounds read and write in callrunTspCmd of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-30649 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Heap out of bound write vulnerability in RmtUimNeedApdu of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.

CVE-2023-30648 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Stack out-of-bounds write vulnerability in IpcRxImeiUpdateImeiNoti of RILD priro to SMR Jul-2023 Release 1 cause a denial of service on the system.

CVE-2023-30647 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Heap out of bound write vulnerability in IpcRxUsimPhoneBookCapa of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.

CVE-2023-30646 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Heap out of bound write vulnerability in BroadcastSmsConfig of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.

CVE-2023-30645 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Heap out of bound write vulnerability in IpcRxIncomingCBMsg of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.

CVE-2023-30644 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Stack out of bound write vulnerability in CdmaSmsParser of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.

CVE-2023-30643 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Missing authentication vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to delete arbitrary non-preloaded applications.

CVE-2023-30642 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to call privilege function.

CVE-2023-30641 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restricted user profile to access device owner's google account data.

CVE-2023-30640 samsung vulnerability CVSS: 0 06 Jul 2023, 03:15 UTC

Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change confiugration.

CVE-2023-21518 samsung vulnerability CVSS: 0 28 Jun 2023, 21:15 UTC

Improper access control vulnerability in SearchWidget prior to version 3.3 in China models allows untrusted applications to start arbitrary activity.

CVE-2023-21517 samsung vulnerability CVSS: 0 28 Jun 2023, 21:15 UTC

Heap out-of-bound write vulnerability in Exynos baseband prior to SMR Jun-2023 Release 1 allows remote attacker to execute arbitrary code.

CVE-2023-21513 samsung vulnerability CVSS: 0 28 Jun 2023, 21:15 UTC

Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition.

CVE-2023-21512 samsung vulnerability CVSS: 0 28 Jun 2023, 21:15 UTC

Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access permission.

CVE-2023-31116 samsung vulnerability CVSS: 0 07 Jun 2023, 21:15 UTC

An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permission can cause unintended querying of RCS capability via a crafted application.

CVE-2023-31115 samsung vulnerability CVSS: 0 07 Jun 2023, 21:15 UTC

An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause changes to the activation mode of RCS via a crafted application.

CVE-2023-31114 samsung vulnerability CVSS: 0 07 Jun 2023, 21:15 UTC

An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause unintended querying of the SIM status via a crafted application.

CVE-2023-21516 samsung vulnerability CVSS: 0 26 May 2023, 22:15 UTC

XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

CVE-2023-21515 samsung vulnerability CVSS: 0 26 May 2023, 22:15 UTC

InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

CVE-2023-21514 samsung vulnerability CVSS: 0 26 May 2023, 22:15 UTC

Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

CVE-2023-29092 samsung vulnerability CVSS: 0 09 May 2023, 02:15 UTC

An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, and Exynos 1080. Binding of a wrong resource can occur due to improper handling of parameters while binding a network interface.

CVE-2023-21504 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Potential buffer overflow vulnerability in mm_Plmncoordination.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.

CVE-2023-21503 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Potential buffer overflow vulnerability in mm_LteInterRatManagement.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.

CVE-2023-21502 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging commands.

CVE-2023-21501 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-21500 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet memory.

CVE-2023-21499 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-21498 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet memory.

CVE-2023-21497 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the memory address.

CVE-2023-21496 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug level.

CVE-2023-21495 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerability in Knox Enrollment Service prior to SMR May-2023 Release 1 allow attacker install KSP app when device admin is set.

CVE-2023-21494 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Potential buffer overflow vulnerability in auth api in mm_Authentication.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.

CVE-2023-21493 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerability in SemShareFileProvider prior to SMR May-2023 Release 1 allows local attackers to access protected data.

CVE-2023-21492 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.

CVE-2023-21491 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerability in ThemeManager prior to SMR May-2023 Release 1 allows local attackers to write arbitrary files with system privilege.

CVE-2023-21490 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control in GearManagerStub prior to SMR May-2023 Release 1 allows a local attacker to delete applications installed by watchmanager.

CVE-2023-21489 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary code.

CVE-2023-21488 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in Tips.

CVE-2023-21487 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerability in Telephony framework prior to SMR May-2023 Release 1 allows local attackers to change a call setting.

CVE-2023-21486 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper export of android application components vulnerability in ImagePreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.

CVE-2023-21485 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper export of android application components vulnerability in VideoPreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.

CVE-2023-21484 samsung vulnerability CVSS: 0 04 May 2023, 21:15 UTC

Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation.

CVE-2023-29091 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP URI.

CVE-2023-29090 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP Via header.

CVE-2023-29089 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding SIP multipart messages.

CVE-2023-29088 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP Session-Expires header.

CVE-2023-29087 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP Retry-After header.

CVE-2023-29086 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP Min-SE header.

CVE-2023-29085 samsung vulnerability CVSS: 0 14 Apr 2023, 21:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123. Memory corruption can occur due to insufficient parameter validation while decoding an SIP status line.

CVE-2023-28613 samsung vulnerability CVSS: 0 04 Apr 2023, 16:15 UTC

An issue was discovered in Samsung Exynos Mobile Processor and Baseband Modem Processor for Exynos 1280, Exynos 2200, and Exynos Modem 5300. An integer overflow in IPv4 fragment handling can occur due to insufficient parameter validation when reassembling these fragments.

CVE-2023-26496 samsung vulnerability CVSS: 0 23 Mar 2023, 02:15 UTC

An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T5124. Memory corruption can occur due to improper checking of the parameter length while parsing the fmtp attribute in the SDP (Session Description Protocol) module.

CVE-2023-26498 samsung vulnerability CVSS: 0 23 Mar 2023, 01:15 UTC

An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos Auto T5126. Memory corruption can occur due to improper checking of the number of properties while parsing the chatroom attribute in the SDP (Session Description Protocol) module.

CVE-2023-26497 samsung vulnerability CVSS: 0 21 Mar 2023, 22:15 UTC

An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T5125. Memory corruption can occur when processing Session Description Negotiation for Video Configuration Attribute.

CVE-2023-21464 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper access control in Samsung Calendar prior to versions 12.4.02.9000 in Android 13 and 12.3.08.2000 in Android 12 allows local attacker to configure improper status.

CVE-2023-21463 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper access control vulnerability in MyFiles application prior to versions 12.2.09.0 in Android 11, 13.1.03.501 in Android 12 and 14.1.03.0 in Android 13 allows local attacker to get sensitive information of secret mode in Samsung Internet application with specific conditions.

CVE-2023-21462 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13 allows to local attacker to access MAC address without related permission.

CVE-2023-21461 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper authorization vulnerability in AutoPowerOnOffConfirmDialog in Settings prior to SMR Mar-2023 Release 1 allows local attacker to turn device off via unprotected activity.

CVE-2023-21460 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.

CVE-2023-21459 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Use after free vulnerability in decon driver prior to SMR Mar-2023 Release 1 allows attackers to cause memory access fault.

CVE-2023-21458 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected intent.

CVE-2023-21457 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Bluetooth without related permission.

CVE-2023-21456 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrary file with system uid.

CVE-2023-21455 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper authorization implementation in Exynos baseband prior to SMR Mar-2023 Release 1 allows incorrect handling of unencrypted message.

CVE-2023-21454 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text history on the lockscreen.

CVE-2023-21453 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to protected data.

CVE-2023-21452 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper usage of implicit intent in Bluetooth prior to SMR Mar-2023 Release 1 allows attacker to get MAC address of connected device.

CVE-2023-21449 samsung vulnerability CVSS: 0 16 Mar 2023, 21:15 UTC

Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper permission.

CVE-2023-26076 samsung vulnerability CVSS: 0 13 Mar 2023, 15:15 UTC

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G SM message codec can occur due to insufficient parameter validation when decoding reserved options.

CVE-2023-26073 samsung vulnerability CVSS: 0 13 Mar 2023, 14:15 UTC

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the extended emergency number list.

CVE-2023-26074 samsung vulnerability CVSS: 0 13 Mar 2023, 13:15 UTC

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding operator-defined access category definitions.

CVE-2023-26072 samsung vulnerability CVSS: 0 13 Mar 2023, 12:15 UTC

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the Emergency number list.

CVE-2023-24033 samsung vulnerability CVSS: 0 13 Mar 2023, 12:15 UTC

The Samsung Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T512 baseband modem chipsets do not properly check format types specified by the Session Description Protocol (SDP) module, which can lead to a denial of service.

CVE-2023-26075 samsung vulnerability CVSS: 0 10 Mar 2023, 17:15 UTC

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the Service Area List.

CVE-2023-21451 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause memory corruptions.

CVE-2023-21448 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Path traversal vulnerability in Samsung Cloud prior to version 5.3.0.32 allows attacker to access specific png file.

CVE-2023-21447 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access information with Samsung Cloud's privilege via implicit intent.

CVE-2023-21446 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper input validation in MyFiles prior to version 12.2.09 in Android R(11), 13.1.03.501 in Android S( 12) and 14.1.00.422 in Android T(13) allows local attacker to access data of MyFiles.

CVE-2023-21445 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in MyFiles prior to versions 12.2.09 in Android R(11), 13.1.03.501 in Android S(12) and 14.1.00.422 in Android T(13) allows local attacker to write file with MyFiles privilege via implicit intent.

CVE-2023-21442 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in Runestone application prior to version 2.9.09.003 in Android R(11) and 3.2.01.007 in Android S(12) allows local attackers to get device location information.

CVE-2023-21441 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.

CVE-2023-21440 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in WindowManagerService prior to SMR Feb-2023 Release 1 allows attackers to take a screen capture.

CVE-2023-21439 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper input validation vulnerability in UwbDataTxStatusEvent prior to SMR Feb-2023 Release 1 allows attackers to launch certain activities.

CVE-2023-21438 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by Secure Folder.

CVE-2023-21437 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to access sensitive information via implicit broadcast.

CVE-2023-21436 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account ID.

CVE-2023-21435 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Exposure of Sensitive Information vulnerability in Fingerprint TA prior to SMR Feb-2023 Release 1 allows attackers to access the memory address information via log.

CVE-2023-21434 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper input validation vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to execute JavaScript by launching a web page.

CVE-2023-21433 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to install applications from Galaxy Store.

CVE-2023-21431 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper input validation in Bixby Vision prior to version 3.7.70.17 allows attacker to access data of Bixby Vision.

CVE-2023-21430 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR JAN-2023 Release 1 allows attacker to cause memory access fault.

CVE-2023-21429 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID.

CVE-2023-21428 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Preferred Call. The patch removes unused code.

CVE-2023-21427 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in NfcTile prior to SMR Jan-2023 Release 1 allows to attacker to use NFC without user recognition.

CVE-2023-21426 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN.

CVE-2023-21425 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to get sensitive information.

CVE-2023-21424 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper Handling of Insufficient Permissions or Privileges vulnerability in SemChameleonHelper prior to SMR Jan-2023 Release 1 allows attacker to modify network related values, network code, carrier id and operator brand.

CVE-2023-21423 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper authorization vulnerability in ChnFileShareKit prior to SMR Jan-2023 Release 1 allows attacker to control BLE advertising without permission using unprotected action.

CVE-2023-21422 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attackers to set custom DNS server without permission via binding WifiService.

CVE-2023-21421 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker to access device SIM PIN.

CVE-2023-21420 samsung vulnerability CVSS: 0 09 Feb 2023, 19:15 UTC

Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary code execution.

CVE-2022-44636 samsung vulnerability CVSS: 0 13 Dec 2022, 15:15 UTC

The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spoofing when a user is activating remote control by pressing a button. This is fixed in xxx72510, E9172511 for 2021 models, xxxA1000, 4x2A0200 for 2022 models.

CVE-2022-39915 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Improper access control vulnerability in Calendar prior to versions 11.6.08.0 in Android Q(10), 12.2.11.3000 in Android R(11), 12.3.07.2000 in Android S(12), and 12.4.02.0 in Android T(13) allows attackers to access sensitive information via implicit intent.

CVE-2022-39911 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Improper check or handling of exceptional conditions vulnerability in Samsung Pass prior to version 4.0.06.1 allows attacker to access Samsung Pass.

CVE-2022-39910 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Improper access control vulnerability in Samsung Pass prior to version 4.0.06.7 allow physical attackers to access data of Samsung Pass on a certain state of an unlocked device using pop-up view.

CVE-2022-39909 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers to create arbitrary file using symbolic link.

CVE-2022-39902 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Improper authorization in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to get sensitive information including IMEI via emergency call.

CVE-2022-39901 samsung vulnerability CVSS: 0 08 Dec 2022, 16:15 UTC

Improper authentication in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to disable the network traffic encryption between UE and gNodeB.

CVE-2022-39893 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Sensitive information exposure vulnerability in FmmBaseModel in Galaxy Buds Pro Manage prior to version 4.1.22092751 allows local attackers with log access permission to get device identifier data through device log.

CVE-2022-39892 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature.

CVE-2022-39891 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Heap overflow vulnerability in parse_pce function in libsavsaudio.so in Editor Lite prior to version 4.0.41.3 allows attacker to get information.

CVE-2022-39890 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Improper Authorization in Samsung Billing prior to version 5.0.56.0 allows attacker to get sensitive information.

CVE-2022-39889 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Improper access control vulnerability in GalaxyWatch4Plugin prior to versions 2.2.11.22101351 and 2.2.12.22101351 allows attackers to access wearable device information.

CVE-2022-39881 samsung vulnerability CVSS: 0 09 Nov 2022, 22:15 UTC

Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR Sep-2022 Release allows remote attacker to read out of bounds memory.

CVE-2022-39878 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in Samsung Checkout prior to version 5.0.55.3 allows attackers to access sensitive information via implicit intent broadcast.

CVE-2022-39877 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in ProfileSharingAccount in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to identify the device.

CVE-2022-39876 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to access device IMEI.

CVE-2022-39875 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.

CVE-2022-39874 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.

CVE-2022-39873 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add bookmarks in secret mode without user authentication.

CVE-2022-39871 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcasts.

CVE-2022-39870 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via PUSH_MESSAGE_RECEIVED broadcast.

CVE-2022-39869 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via REMOVE_PERSISTENT_BANNER broadcast.

CVE-2022-39868 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.

CVE-2022-39867 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via SHOW_PERSISTENT_BANNER broadcast.

CVE-2022-39866 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.

CVE-2022-39865 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in ContentsSharingActivity.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.

CVE-2022-39864 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in WifiSetupLaunchHelper in SmartThings prior to version 1.7.89.25 allows attackers to access sensitive information via implicit intent.

CVE-2022-39863 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content providers without permission.

CVE-2022-39862 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper authorization in Dynamic Lockscreen prior to SMR Sep-2022 Release 1 in Android R(11) and 3.3.03.66 in Android S(12) allows unauthorized use of javascript interface api.

CVE-2022-39861 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Unprotected Receiver in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to record video without camera privilege.

CVE-2022-39860 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to access sensitive information via implicit broadcast.

CVE-2022-39859 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Implicit intent hijacking vulnerability in UPHelper library prior to version 3.0.12 allows attackers to access sensitive information via implicit intent.

CVE-2022-39858 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to write arbitrary file as FactoryCamera privilege.

CVE-2022-39857 samsung vulnerability CVSS: 0 07 Oct 2022, 15:15 UTC

Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3.5.51 allows attackers to access broadcasting Intent as system uid privilege.

CVE-2022-40279 samsung vulnerability CVSS: 0 29 Sep 2022, 03:15 UTC

An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). l2_packet_receive_timeout in wpa_supplicant/src/l2_packet/l2_packet_pcap.c has a missing check on the return value of pcap_dispatch, leading to a denial of service (malfunction).

CVE-2022-40278 samsung vulnerability CVSS: 0 29 Sep 2022, 03:15 UTC

An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). createDB in security/provisioning/src/provisioningdatabasemanager.c has a missing sqlite3_free after sqlite3_exec, leading to a denial of service.

CVE-2022-40762 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

A Memory Allocation with Excessive Size Value vulnerablity in the TEE_Realloc function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_Realloc with an excessive number for the parameter len.

CVE-2022-40761 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

The function tee_obj_free in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_AllocateOperation with a disturbed heap layout, related to utee_cryp_obj_alloc.

CVE-2022-40760 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

A Buffer Access with Incorrect Length Value vulnerablity in the TEE_MACUpdate function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACUpdate with an excessive size value of chunkSize.

CVE-2022-40759 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

A NULL pointer dereference issue in the TEE_MACCompareFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACCompareFinal with a NULL pointer for the parameter operation.

CVE-2022-40758 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

A Buffer Access with Incorrect Length Value vulnerablity in the TEE_CipherUpdate function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_CipherUpdate with an excessive size value of srcLen.

CVE-2022-40757 samsung vulnerability CVSS: 0 16 Sep 2022, 22:15 UTC

A Buffer Access with Incorrect Length Value vulnerablity in the TEE_MACComputeFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACComputeFinal with an excessive size value of messageLen.

CVE-2022-39846 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

DLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code.

CVE-2022-39845 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper validation of integrity check vulnerability in Samsung Kies prior to version 2.6.4.22074 allows local attackers to delete arbitrary directory using directory junction.

CVE-2022-39844 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.22083 allows local attackers to delete arbitrary directory using directory junction.

CVE-2022-36878 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via log.

CVE-2022-36877 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local attackers to access device identification via log.

CVE-2022-36876 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper authorization in UPI payment in Samsung Pass prior to version 4.0.04.10 allows physical attackers to access account list without authentication.

CVE-2022-36875 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission.

CVE-2022-36874 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper Handling of Insufficient Permissions or Privileges vulnerability in Waterplugin prior to 2.2.11.22040751 allows attacker to access device IMEI and Serial number.

CVE-2022-36873 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper restriction of broadcasting Intent in GalaxyStoreBridgePageLinker of?Waterplugin prior to version 2.2.11.22081151 leaks MAC address of the connected Bluetooth device.

CVE-2022-36872 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Pending Intent hijacking vulnerability in SpayNotification in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.

CVE-2022-36871 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Pending Intent hijacking vulnerability in NotiCenterUtils in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.

CVE-2022-36870 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Pending Intent hijacking vulnerability in MTransferNotificationManager in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.

CVE-2022-36869 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control vulnerability in ContactsDumpActivity of?Contacts Provider prior to version 12.7.59 allows attacker to access the file without permission.

CVE-2022-36867 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control vulnerability in Editor Lite prior to version 4.0.40.14 allows attackers to access sensitive information.

CVE-2022-36866 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control vulnerability in Broadcaster in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to identify the device.

CVE-2022-36865 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to access device information.

CVE-2022-36864 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control and intent redirection in Samsung Email prior to 6.1.70.20 allows attacker to access specific formatted file and execute privileged behavior.

CVE-2022-36859 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.21-6 allows privileged attackers to trigger a XSS on a victim's devices.

CVE-2022-36851 samsung vulnerability CVSS: 0 09 Sep 2022, 15:15 UTC

Improper access control vulnerability in Samsung pass prior to version 4.0.03.1 allow physical attackers to access data of Samsung pass on a certain state of an unlocked device.

CVE-2022-40281 samsung vulnerability CVSS: 0 08 Sep 2022, 22:15 UTC

An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). cyassl_connect_step2 in curl/vtls/cyassl.c has a missing X509_free after SSL_get_peer_certificate, leading to information disclosure.

CVE-2022-40280 samsung vulnerability CVSS: 0 08 Sep 2022, 22:15 UTC

An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). createDB in security/provisioning/src/provisioningdatabasemanager.c has a missing sqlite3_close after sqlite3_open_v2, leading to a denial of service.

CVE-2022-39830 samsung vulnerability CVSS: 0 05 Sep 2022, 04:15 UTC

sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_public_key_affine_coordinates, leading to a denial of service.

CVE-2022-39829 samsung vulnerability CVSS: 0 05 Sep 2022, 04:15 UTC

There is a NULL pointer dereference in aes256_encrypt in Samsung mTower through 0.3.0 due to a missing check on the return value of EVP_CIPHER_CTX_new.

CVE-2022-39828 samsung vulnerability CVSS: 0 05 Sep 2022, 04:15 UTC

sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_private_key, leading to a denial of service.

CVE-2022-36622 samsung vulnerability CVSS: 0 01 Sep 2022, 21:15 UTC

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_GetObjectInfo1.

CVE-2022-36621 samsung vulnerability CVSS: 0 01 Sep 2022, 21:15 UTC

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.

CVE-2022-38155 samsung vulnerability CVSS: 0 11 Aug 2022, 01:15 UTC

TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive Memory Allocation via a large len value, as demonstrated by a Numaker-PFM-M2351 TEE kernel crash.

CVE-2022-36839 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

SQL injection vulnerability via IAPService in Samsung Checkout prior to version 5.0.53.1 allows attackers to access IAP information.

CVE-2022-36838 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Implicit Intent hijacking vulnerability in Galaxy Wearable prior to version 2.2.50 allows attacker to get sensitive information.

CVE-2022-36837 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Intent redirection vulnerability using implicit intent in Samsung email prior to version 6.1.70.20 allows attacker to get sensitive information.

CVE-2022-36836 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Unprotected provider vulnerability in Charm by Samsung prior to version 1.2.3 allows attackers to read connection state without permission.

CVE-2022-36835 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Implicit Intent hijacking vulnerability in Samsung Internet Browser prior to version 17.0.7.34 allows attackers to access arbitrary files.

CVE-2022-36834 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Exposure of Sensitive Information vulnerability in Game Launcher prior to version 6.0.07 allows local attacker to access app data with user interaction.

CVE-2022-36832 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Improper access control vulnerability in WebApp in Cameralyzer prior to versions 3.2.22, 3.3.22, 3.4.22 and 3.5.51 allows attackers to access external storage as Cameralyzer privilege.

CVE-2022-36831 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.

CVE-2022-36830 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

PendingIntent hijacking vulnerability in cancelAlarmManager in Charm by Samsung prior to version 1.2.3 allows local attackers to access files without permission via implicit intent.

CVE-2022-36829 samsung vulnerability CVSS: 0 05 Aug 2022, 16:15 UTC

PendingIntent hijacking vulnerability in releaseAlarm in Charm by Samsung prior to version 1.2.3 allows local attackers to access files without permission via implicit intent.

CVE-2022-35858 samsung vulnerability CVSS: 0 04 Aug 2022, 20:15 UTC

The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to trigger a memory overwrite, denial of service, and information disclosure by invoking the function TEE_PopulateTransientObject with a large number in the parameter attrCount.

CVE-2022-33713 samsung vulnerability CVSS: 5.0 12 Jul 2022, 14:15 UTC

Implicit Intent hijacking vulnerability in Samsung Cloud prior to version 5.2.0 allows attacker to get sensitive information.

CVE-2022-33712 samsung vulnerability CVSS: 5.0 12 Jul 2022, 14:15 UTC

Intent redirection vulnerability using implict intent in Camera prior to versions 12.0.01.64 ,12.0.3.23, 12.0.0.98, 12.0.6.11, 12.0.3.19 in Android S(12) allows attacker to get sensitive information.

CVE-2022-33711 samsung vulnerability CVSS: 2.1 12 Jul 2022, 14:15 UTC

Improper validation of integrity check vulnerability in Samsung USB Driver Windows Installer for Mobile Phones prior to version 1.7.56.0 allows local attackers to delete arbitrary directory using directory junction.

CVE-2022-33710 samsung vulnerability CVSS: 7.2 12 Jul 2022, 14:15 UTC

Improper input validation vulnerability in BillingPackageInsraller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.

CVE-2022-33709 samsung vulnerability CVSS: 7.2 12 Jul 2022, 14:15 UTC

Improper input validation vulnerability in ApexPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.

CVE-2022-33708 samsung vulnerability CVSS: 7.2 12 Jul 2022, 14:15 UTC

Improper input validation vulnerability in AppsPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.

CVE-2022-33707 samsung vulnerability CVSS: 5.0 12 Jul 2022, 14:15 UTC

Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.

CVE-2022-33705 samsung vulnerability CVSS: 2.1 12 Jul 2022, 14:15 UTC

Information exposure in Calendar prior to version 12.3.05.10000 allows attacker to access calendar schedule without READ_CALENDAR permission.

CVE-2022-30749 samsung vulnerability CVSS: 4.6 07 Jun 2022, 19:15 UTC

Improper access control vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to add arbitrary smart devices by bypassing login activity.

CVE-2022-30748 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Unprotected dynamic receiver in Samsung Members prior to version 4.2.005 allows attacker to launch arbitrary activity.

CVE-2022-30747 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

PendingIntent hijacking vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to access files without permission via implicit Intent.

CVE-2022-30746 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Missing caller check in Smart Things prior to version 1.7.85.12 allows attacker to access senstive information remotely using javascript interface API.

CVE-2022-30745 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Improper access control vulnerability in Quick Share prior to version 13.1.2.4 allows attacker to access internal files in Quick Share.

CVE-2022-30744 samsung vulnerability CVSS: 4.4 07 Jun 2022, 19:15 UTC

DLL hijacking vulnerability in KiesWrapper in Samsung Kies prior to version 2.6.4.22043_1 allows attacker to execute arbitrary code.

CVE-2022-30743 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without permission.

CVE-2022-30742 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Sensitive information exposure vulnerability in FmmExtraOperation of Find My Mobile prior to 7.2.24.12 allows local attackers with log access permissio to get sim card information through device log.

CVE-2022-30741 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Sensitive information exposure vulnerability in SimChangeAlertManger of Find My Mobile prior to 7.2.24.12 allows local attackers with log access permission to get sim card information through device log.

CVE-2022-30740 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Improper auto-fill algorithm in Samsung Internet prior to version 17.0.1.69 allows physical attackers to guess stored credit card numbers.

CVE-2022-30739 samsung vulnerability CVSS: 4.0 07 Jun 2022, 19:15 UTC

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get an user email or phone number with a normal level permission.

CVE-2022-30738 samsung vulnerability CVSS: 4.3 07 Jun 2022, 19:15 UTC

Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing script.

CVE-2022-30737 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Implicit Intent hijacking vulnerability in Samsung Account prior to version 13.2.00.6 allows attackers to get email ID.

CVE-2022-30736 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without permission.

CVE-2022-30735 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without permission.

CVE-2022-30734 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number without permission.

CVE-2022-30733 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Sensitive information exposure in Sign-in log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number without permission.

CVE-2022-30732 samsung vulnerability CVSS: 5.0 07 Jun 2022, 19:15 UTC

Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive information via onActivityResult.

CVE-2022-30730 samsung vulnerability CVSS: 2.1 07 Jun 2022, 19:15 UTC

Improper authorization in Samsung Pass prior to 1.0.00.33 allows physical attackers to acess account list without authentication.

CVE-2022-28793 samsung vulnerability CVSS: 2.1 03 May 2022, 20:15 UTC

Given the TEE is compromised and controlled by the attacker, improper state maintenance in StrongBox allows attackers to change Android ROT during device boot cycle after compromising TEE. The patch is applied in Galaxy S22 to prevent change of Android ROT after first initialization at boot time.

CVE-2022-28792 samsung vulnerability CVSS: 4.4 03 May 2022, 20:15 UTC

DLL hijacking vulnerability in Gear IconX PC Manager prior to version 2.1.220405.51 allows attacker to execute arbitrary code. The patch adds proper absolute path to prevent dll hijacking.

CVE-2022-28791 samsung vulnerability CVSS: 2.1 03 May 2022, 20:15 UTC

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

CVE-2022-28790 samsung vulnerability CVSS: 2.1 03 May 2022, 20:15 UTC

Improper authentication in Link to Windows Service prior to version 2.3.04.1 allows attacker to lock the device. The patch adds proper caller signature check logic.

CVE-2022-28789 samsung vulnerability CVSS: 2.1 03 May 2022, 20:15 UTC

Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interaction. The patch adds proper permission for vulnerable activities.

CVE-2022-28777 samsung vulnerability CVSS: 2.1 11 Apr 2022, 20:15 UTC

Improper access control vulnerability in Samsung Members prior to version 13.6.08.5 allows local attacker to execute call function without CALL_PHONE permission.

CVE-2022-28776 samsung vulnerability CVSS: 4.6 11 Apr 2022, 20:15 UTC

Improper access control vulnerability in Galaxy Store prior to version 4.5.36.4 allows attacker to install applications from Galaxy Store without user interactions.

CVE-2022-28775 samsung vulnerability CVSS: 2.1 11 Apr 2022, 20:15 UTC

Improper access control vulnerability in Samsung Flow prior to version 4.8.06.5 allows attacker to write the file without Samsung Flow permission.

CVE-2022-28544 samsung vulnerability CVSS: 5.0 11 Apr 2022, 20:15 UTC

Path traversal vulnerability in unzip method of InstallAgentCommonHelper in Galaxy store prior to version 4.5.40.5 allows attacker to access the file of Galaxy store.

CVE-2022-28543 samsung vulnerability CVSS: 2.1 11 Apr 2022, 20:15 UTC

Path traversal vulnerability in Samsung Flow prior to version 4.8.07.4 allows local attackers to read arbitrary files as Samsung Flow permission.

CVE-2022-28542 samsung vulnerability CVSS: 2.1 11 Apr 2022, 20:15 UTC

Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.40.5 allows local attackers to access privileged content providers as Galaxy Store permission.

CVE-2022-27843 samsung vulnerability CVSS: 4.4 11 Apr 2022, 20:15 UTC

DLL hijacking vulnerability in Kies prior to version 2.6.4.22014_2 allows attacker to execute abitrary code.

CVE-2022-27842 samsung vulnerability CVSS: 4.4 11 Apr 2022, 20:15 UTC

DLL hijacking vulnerability in Smart Switch PC prior to version 4.2.22022_4 allows attacker to execute abitrary code.

CVE-2022-27841 samsung vulnerability CVSS: 1.9 11 Apr 2022, 20:15 UTC

Improper exception handling in Samsung Pass prior to version 3.7.07.5 allows physical attacker to view the screen that is previously running without authentication

CVE-2022-27839 samsung vulnerability CVSS: 4.3 11 Apr 2022, 20:15 UTC

Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allows attackers to access bookmark tab without proper credentials.

CVE-2022-27838 samsung vulnerability CVSS: 7.2 11 Apr 2022, 20:15 UTC

Improper access control vulnerability in FactoryCamera prior to version 2.1.96 allows attacker to access the file with system privilege.

CVE-2022-27837 samsung vulnerability CVSS: 9.3 11 Apr 2022, 20:15 UTC

A vulnerability using PendingIntent in Accessibility prior to version 12.5.3.2 in Android R(11.0) and 13.0.1.1 in Android S(12.0) allows attacker to access the file with system privilege.

CVE-2022-25154 samsung vulnerability CVSS: 4.4 05 Apr 2022, 06:15 UTC

A DLL hijacking vulnerability in Samsung portable SSD T5 PC software before 1.6.9 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows 7, 10, or 11 to exploit this vulnerability.)

CVE-2022-25830 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log

CVE-2022-25829 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Watch Active2 Plugin prior to version 2.2.08.22012751 allows attacker to access password information of connected WiFiAp in the log

CVE-2022-25828 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Watch Active Plugin prior to version 2.2.07.22012751 allows attacker to access password information of connected WiFiAp in the log

CVE-2022-25827 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log

CVE-2022-25826 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Galaxy S3 Plugin prior to version 2.2.03.22012751 allows attacker to access password information of connected WiFiAp in the log

CVE-2022-25823 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:47 UTC

Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.220126741 allows attackers to access user information in log.

CVE-2022-24932 samsung vulnerability CVSS: 2.1 10 Mar 2022, 17:46 UTC

Improper Protection of Alternate Path vulnerability in Setup wizard process prior to SMR Mar-2022 Release 1 allows physical attacker package installation before finishing Setup wizard.

CVE-2022-24930 samsung vulnerability CVSS: 4.3 10 Mar 2022, 17:46 UTC

An Improper access control vulnerability in StRetailModeReceiver in Wear OS 3.0 prior to Firmware update MAR-2022 Release allows untrusted applications to reset default app settings without a proper permission

CVE-2022-24927 samsung vulnerability CVSS: 7.5 11 Feb 2022, 18:15 UTC

Improper privilege management vulnerability in Samsung Video Player prior to version 7.3.15.30 allows attackers to execute video files without permission.

CVE-2022-24926 samsung vulnerability CVSS: 3.5 11 Feb 2022, 18:15 UTC

Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.15-6 allows privileged attackers to trigger a XSS on a victim's devices.

CVE-2022-24924 samsung vulnerability CVSS: 5.0 11 Feb 2022, 18:15 UTC

An improper access control in LiveWallpaperService prior to versions 3.0.9.0 allows to create a specific named system directory without a proper permission.

CVE-2022-24923 samsung vulnerability CVSS: 2.1 11 Feb 2022, 18:15 UTC

Improper access control vulnerability in Samsung SearchWidget prior to versions 2.3.00.6 in China models allows untrusted applications to load arbitrary URL and local files in webview.

CVE-2022-24003 samsung vulnerability CVSS: 5.0 11 Feb 2022, 18:15 UTC

Exposure of Sensitive Information vulnerability in Bixby Vision prior to version 3.7.50.6 allows attackers to access internal data of Bixby Vision via unprotected intent.

CVE-2022-24002 samsung vulnerability CVSS: 5.0 11 Feb 2022, 18:15 UTC

Improper Authorization vulnerability in Link Sharing prior to version 12.4.00.3 allows attackers to open protected activity via PreconditionActivity.

CVE-2022-23998 samsung vulnerability CVSS: 4.3 11 Feb 2022, 18:15 UTC

Improper access control vulnerability in Camera prior to versions 11.1.02.16 in Android R(11), 10.5.03.77 in Android Q(10) and 9.0.6.68 in Android P(9) allows untrusted applications to take a picture in screenlock status.

CVE-2022-23997 samsung vulnerability CVSS: 4.3 11 Feb 2022, 18:15 UTC

Unprotected component vulnerability in StTheaterModeDurationAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to disable theater mode without a proper permission.

CVE-2022-23996 samsung vulnerability CVSS: 4.3 11 Feb 2022, 18:15 UTC

Unprotected component vulnerability in StTheaterModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to enable bedtime mode without a proper permission.

CVE-2022-23995 samsung vulnerability CVSS: 4.3 11 Feb 2022, 18:15 UTC

Unprotected component vulnerability in StBedtimeModeAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.

CVE-2022-23994 samsung vulnerability CVSS: 4.3 11 Feb 2022, 18:15 UTC

An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.

CVE-2022-23434 samsung vulnerability CVSS: 2.1 11 Feb 2022, 18:15 UTC

A vulnerability using PendingIntent in Bixby Vision prior to versions 3.7.60.8 in Android S(12), 3.7.50.6 in Andorid R(11) and below allows attackers to execute privileged action by hijacking and modifying the intent.

CVE-2022-23433 samsung vulnerability CVSS: 5.0 11 Feb 2022, 18:15 UTC

Improper access control vulnerability in Reminder prior to versions 12.3.01.3000 in Android S(12), 12.2.05.6000 in Android R(11) and 11.6.08.6000 in Andoid Q(10) allows attackers to register reminders or execute exporeted activities remotely.

CVE-2022-22290 samsung vulnerability CVSS: 4.3 14 Jan 2022, 20:15 UTC

Incorrect download source UI in Downloads in Samsung Internet prior to 16.0.6.23 allows attackers to perform domain spoofing via a crafted HTML page.

CVE-2022-22288 samsung vulnerability CVSS: 5.0 10 Jan 2022, 14:12 UTC

Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.

CVE-2022-22287 samsung vulnerability CVSS: 2.1 10 Jan 2022, 14:12 UTC

Abitrary file access vulnerability in Samsung Email prior to 6.1.60.16 allows attacker to read isolated data in sandbox.

CVE-2022-22285 samsung vulnerability CVSS: 3.6 10 Jan 2022, 14:12 UTC

A vulnerability using PendingIntent in Reminder prior to version 12.2.05.0 in Android R(11.0) and 12.3.02.1000 in Android S(12.0) allows attackers to execute privileged action by hijacking and modifying the intent.

CVE-2022-22284 samsung vulnerability CVSS: 2.1 10 Jan 2022, 14:12 UTC

Improper authentication vulnerability in Samsung Internet prior to 16.0.2.19 allows attackers to bypass secret mode password authentication

CVE-2022-22283 samsung vulnerability CVSS: 2.1 10 Jan 2022, 14:12 UTC

Improper session management vulnerability in Samsung Health prior to 6.20.1.005 prevents logging out from Samsung Health App.

CVE-2020-9061 samsung vulnerability CVSS: 3.3 10 Jan 2022, 14:10 UTC

Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.

CVE-2021-42913 samsung vulnerability CVSS: 5.0 20 Dec 2021, 09:15 UTC

The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext passwords by reading the HTML source code. Authentication is not required.

CVE-2021-25521 samsung vulnerability CVSS: 2.1 08 Dec 2021, 15:15 UTC

Insecure caller check in sharevia deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to get current tab URL in Samsung Internet.

CVE-2021-25520 samsung vulnerability CVSS: 4.3 08 Dec 2021, 15:15 UTC

Insecure caller check and input validation vulnerabilities in SearchKeyword deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to execute script codes in Samsung Internet.

CVE-2021-42114 samsung vulnerability CVSS: 7.9 16 Nov 2021, 12:15 UTC

Modern DRAM devices (PC-DDR4, LPDDR4X) are affected by a vulnerability in their internal Target Row Refresh (TRR) mitigation against Rowhammer attacks. Novel non-uniform Rowhammer access patterns, consisting of aggressors with different frequencies, phases, and amplitudes allow triggering bit flips on affected memory modules using our Blacksmith fuzzer. The patterns generated by Blacksmith were able to trigger bitflips on all 40 PC-DDR4 DRAM devices in our test pool, which cover the three major DRAM manufacturers: Samsung, SK Hynix, and Micron. This means that, even when chips advertised as Rowhammer-free are used, attackers may still be able to exploit Rowhammer. For example, this enables privilege-escalation attacks against the kernel or binaries such as the sudo binary, and also triggering bit flips in RSA-2048 keys (e.g., SSH keys) to gain cross-tenant virtual-machine access. We can confirm that DRAM devices acquired in July 2020 with DRAM chips from all three major DRAM vendors (Samsung, SK Hynix, Micron) are affected by this vulnerability. For more details, please refer to our publication.

CVE-2021-25509 samsung vulnerability CVSS: 3.6 05 Nov 2021, 03:15 UTC

A missing input validation in Samsung Flow Windows application prior to Version 4.8.5.0 allows attackers to overwrite abtraty file in the Windows known folders.

CVE-2021-25508 samsung vulnerability CVSS: 7.5 05 Nov 2021, 03:15 UTC

Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.

CVE-2021-25507 samsung vulnerability CVSS: 2.7 05 Nov 2021, 03:15 UTC

Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user device to access part of notification data in Secure Folder without authorization.

CVE-2021-25506 samsung vulnerability CVSS: 2.1 05 Nov 2021, 03:15 UTC

Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service.

CVE-2021-25505 samsung vulnerability CVSS: 6.8 05 Nov 2021, 03:15 UTC

Improper authentication in Samsung Pass prior to 3.0.02.4 allows to use app without authentication when lockscreen is unlocked.

CVE-2021-25504 samsung vulnerability CVSS: 2.1 05 Nov 2021, 03:15 UTC

Intent redirection vulnerability in Group Sharing prior to 10.8.03.2 allows attacker to access contact information.

CVE-2021-25499 samsung vulnerability CVSS: 2.1 06 Oct 2021, 18:15 UTC

Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows attacker to access content provider of Galaxy Store.

CVE-2021-25498 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.

CVE-2021-25497 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.

CVE-2021-25496 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.

CVE-2021-25495 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.

CVE-2021-25494 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.

CVE-2021-25493 samsung vulnerability CVSS: 3.6 06 Oct 2021, 18:15 UTC

Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read

CVE-2021-25492 samsung vulnerability CVSS: 3.6 06 Oct 2021, 18:15 UTC

Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read.

CVE-2021-25489 samsung vulnerability CVSS: 4.9 06 Oct 2021, 18:15 UTC

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

CVE-2021-25487 samsung vulnerability CVSS: 4.6 06 Oct 2021, 18:15 UTC

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

CVE-2021-25466 samsung vulnerability CVSS: 5.0 09 Sep 2021, 19:15 UTC

Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-the-middle attack and obtain Samsung Account token.

CVE-2021-39373 samsung vulnerability CVSS: 4.6 01 Sep 2021, 13:15 UTC

Samsung Drive Manager 2.0.104 on Samsung H3 devices allows attackers to bypass intended access controls on disk management. WideCharToMultiByte, WideCharStr, and MultiByteStr can contribute to password exposure.

CVE-2021-22684 samsung vulnerability CVSS: 5.0 31 Aug 2021, 17:15 UTC

Tizen RT RTOS version 3.0.GBB is vulnerable to integer wrap-around in functions_calloc and mm_zalloc. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash

CVE-2021-25447 samsung vulnerability CVSS: 5.0 05 Aug 2021, 20:15 UTC

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause local file inclusion in webview.

CVE-2021-25446 samsung vulnerability CVSS: 5.0 05 Aug 2021, 20:15 UTC

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview.

CVE-2021-25445 samsung vulnerability CVSS: 5.0 05 Aug 2021, 20:15 UTC

Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Internet.

CVE-2021-25442 samsung vulnerability CVSS: 5.0 08 Jul 2021, 14:15 UTC

Improper MDM policy management vulnerability in KME module prior to KCS version 1.39 allows MDM users to bypass Knox Manage authentication.

CVE-2021-25441 samsung vulnerability CVSS: 4.6 08 Jul 2021, 14:15 UTC

Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to access arbitrary files with an escalated privilege.

CVE-2021-25440 samsung vulnerability CVSS: 4.6 08 Jul 2021, 14:15 UTC

Improper access control vulnerability in FactoryCameraFB prior to version 3.4.74 allows untrusted applications to access arbitrary files with an escalated privilege.

CVE-2021-25439 samsung vulnerability CVSS: 2.1 08 Jul 2021, 14:15 UTC

Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview.

CVE-2021-25438 samsung vulnerability CVSS: 4.6 08 Jul 2021, 14:15 UTC

Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause local file inclusion in webview.

CVE-2021-25432 samsung vulnerability CVSS: 2.1 08 Jul 2021, 14:15 UTC

Information exposure vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to access chat data.

CVE-2021-25431 samsung vulnerability CVSS: 2.1 08 Jul 2021, 14:15 UTC

Improper access control vulnerability in Cameralyzer prior to versions 3.2.1041 in 3.2.x, 3.3.1040 in 3.3.x, and 3.4.4210 in 3.4.x allows untrusted applications to access some functions of Cameralyzer.

CVE-2021-25425 samsung vulnerability CVSS: 5.0 11 Jun 2021, 15:15 UTC

Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exported component.

CVE-2021-25424 samsung vulnerability CVSS: 5.8 11 Jun 2021, 15:15 UTC

Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the user's bluetooth device without user awareness.

CVE-2021-25423 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone via log.

CVE-2021-25422 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.

CVE-2021-25421 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.

CVE-2021-25420 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.

CVE-2021-25419 samsung vulnerability CVSS: 4.3 11 Jun 2021, 15:15 UTC

Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar via phising URL link.

CVE-2021-25418 samsung vulnerability CVSS: 4.4 11 Jun 2021, 15:15 UTC

Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications to execute arbitrary activity in specific condition.

CVE-2021-25405 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.

CVE-2021-25404 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log.

CVE-2021-25403 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.

CVE-2021-25402 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information.

CVE-2021-25401 samsung vulnerability CVSS: 4.6 11 Jun 2021, 15:15 UTC

Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action.

CVE-2021-25400 samsung vulnerability CVSS: 4.6 11 Jun 2021, 15:15 UTC

Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.

CVE-2021-25399 samsung vulnerability CVSS: 3.6 11 Jun 2021, 15:15 UTC

Improper configuration in Smart Manager prior to version 11.0.05.0 allows attacker to access the file with system privilege.

CVE-2021-25398 samsung vulnerability CVSS: 2.1 11 Jun 2021, 15:15 UTC

Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts.

CVE-2021-25395 samsung vulnerability CVSS: 4.4 11 Jun 2021, 15:15 UTC

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.

CVE-2021-25394 samsung vulnerability CVSS: 4.4 11 Jun 2021, 15:15 UTC

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.

CVE-2021-3438 samsung vulnerability CVSS: 4.6 20 May 2021, 14:15 UTC

A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could lead to an escalation of privilege.

CVE-2020-26146 samsung vulnerability CVSS: 2.9 11 May 2021, 20:15 UTC

An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.

CVE-2020-26145 samsung vulnerability CVSS: 3.3 11 May 2021, 20:15 UTC

An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and process them as full unfragmented frames. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.

CVE-2020-26144 samsung vulnerability CVSS: 3.3 11 May 2021, 20:15 UTC

An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (i.e., LLC/SNAP) header for EAPOL. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.

CVE-2021-25381 samsung vulnerability CVSS: 4.6 09 Apr 2021, 18:15 UTC

Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.

CVE-2021-25380 samsung vulnerability CVSS: 7.5 09 Apr 2021, 18:15 UTC

Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions registered by the user.

CVE-2021-25379 samsung vulnerability CVSS: 2.1 09 Apr 2021, 18:15 UTC

Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action.

CVE-2021-25378 samsung vulnerability CVSS: 5.0 09 Apr 2021, 18:15 UTC

Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of service.

CVE-2021-25376 samsung vulnerability CVSS: 5.0 09 Apr 2021, 18:15 UTC

An improper synchronization logic in Samsung Email prior to version 6.1.41.0 can leak messages in certain mailbox in plain text when STARTTLS negotiation is failed.

CVE-2021-25375 samsung vulnerability CVSS: 4.3 09 Apr 2021, 18:15 UTC

Using predictable index for attachments in Samsung Email prior to version 6.1.41.0 allows remote attackers to get attachments of another emails when users open the malicious attachment.

CVE-2021-25374 samsung vulnerability CVSS: 5.0 09 Apr 2021, 18:15 UTC

An improper authorization vulnerability in Samsung Members "samsungrewards" scheme for deeplink in versions 2.4.83.9 in Android O(8.1) and below, and 3.9.00.9 in Android P(9.0) and above allows remote attackers to access a user data related with Samsung Account.

CVE-2021-25372 samsung vulnerability CVSS: 7.2 26 Mar 2021, 19:15 UTC

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

CVE-2021-25371 samsung vulnerability CVSS: 7.2 26 Mar 2021, 19:15 UTC

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

CVE-2021-25370 samsung vulnerability CVSS: 4.9 26 Mar 2021, 19:15 UTC

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

CVE-2021-25369 samsung vulnerability CVSS: 2.1 26 Mar 2021, 19:15 UTC

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

CVE-2021-25368 samsung vulnerability CVSS: 5.0 25 Mar 2021, 17:15 UTC

Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is executed.

CVE-2021-25367 samsung vulnerability CVSS: 5.5 25 Mar 2021, 17:15 UTC

Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without permission.

CVE-2021-25366 samsung vulnerability CVSS: 3.6 25 Mar 2021, 17:15 UTC

Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass the secret mode's authentication.

CVE-2021-25355 samsung vulnerability CVSS: 4.6 25 Mar 2021, 17:15 UTC

Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action without permission via hijacking the PendingIntent.

CVE-2021-25354 samsung vulnerability CVSS: 6.8 25 Mar 2021, 17:15 UTC

Improper input check in Samsung Internet prior to version 13.2.1.46 allows attackers to launch non-exported activity in Samsung Browser via malicious deeplink.

CVE-2021-25353 samsung vulnerability CVSS: 3.6 25 Mar 2021, 17:15 UTC

Using empty PendingIntent in Galaxy Themes prior to version 5.2.00.1215 allows local attackers to read/write private file directories of Galaxy Themes application without permission via hijacking the PendingIntent.

CVE-2021-25352 samsung vulnerability CVSS: 4.6 25 Mar 2021, 17:15 UTC

Using PendingIntent with implicit intent in Bixby Voice prior to version 3.0.52.14 allows attackers to execute privileged action by hijacking and modifying the intent.

CVE-2021-25351 samsung vulnerability CVSS: 2.1 25 Mar 2021, 17:15 UTC

Improper Access Control in EmailValidationView in Samsung Account prior to version 10.7.0.7 and 12.1.1.3 allows physically proximate attackers to log out user account on device without user password.

CVE-2021-25350 samsung vulnerability CVSS: 2.1 25 Mar 2021, 17:15 UTC

Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically proximate attackers to access user information via log.

CVE-2021-25349 samsung vulnerability CVSS: 4.6 25 Mar 2021, 17:15 UTC

Using unsafe PendingIntent in Slow Motion Editor prior to version 3.5.18.5 allows local attackers unauthorized action without permission via hijacking the PendingIntent.

CVE-2021-25348 samsung vulnerability CVSS: 2.1 04 Mar 2021, 22:15 UTC

Improper permission grant check in Samsung Internet prior to version 13.0.1.60 allows access to files in internal storage without authorized STORAGE permission.

CVE-2021-25343 samsung vulnerability CVSS: 2.1 04 Mar 2021, 22:15 UTC

Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.13 (in Android P(9.0) and above) allows unauthorized actions including denial of service attack by hijacking the provider.

CVE-2021-25342 samsung vulnerability CVSS: 2.1 04 Mar 2021, 22:15 UTC

Calling of non-existent provider in SMP sdk prior to version 3.0.9 allows unauthorized actions including denial of service attack by hijacking the provider.

CVE-2021-25337 samsung vulnerability CVSS: 5.8 04 Mar 2021, 21:15 UTC

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.

CVE-2021-25335 samsung vulnerability CVSS: 1.9 04 Mar 2021, 21:15 UTC

Improper lockscreen status check in cocktailbar service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows unauthenticated users to access hidden notification contents over the lockscreen in specific condition.

CVE-2020-25054 samsung vulnerability CVSS: 6.4 31 Aug 2020, 21:15 UTC

An issue was discovered on Samsung mobile devices with software through 2020-04-02 (Exynos modem chipsets). There is a heap-based buffer over-read in the Shannon baseband. The Samsung ID is SVE-2020-17239 (August 2020).

CVE-2017-18681 samsung vulnerability CVSS: 10.0 07 Apr 2020, 16:15 UTC

An issue was discovered on Samsung Galaxy S5 mobile devices with software through 2016-12-20 (Qualcomm AP chipsets). There are multiple buffer overflows in the bootloader. The Samsung ID is SVE-2016-7930 (March 2017).

CVE-2016-11050 samsung vulnerability CVSS: 2.1 07 Apr 2020, 13:15 UTC

An issue was discovered on Samsung mobile devices with S3(KK), Note2(KK), S4(L), Note3(L), and S5(L) software. An attacker can rewrite the IMEI by flashing crafted firmware. The Samsung ID is SVE-2016-5562 (March 2016).

CVE-2019-20566 samsung vulnerability CVSS: 7.5 24 Mar 2020, 19:15 UTC

An issue was discovered on Samsung mobile devices with any (before September 2019 for SMP1300 Exynos modem chipsets) software. Attackers can trigger stack corruption in the Shannon modem via a crafted RP-Originator/Destination address. The Samsung ID is SVE-2019-14858 (September 2019).

CVE-2019-20564 samsung vulnerability CVSS: 5.0 24 Mar 2020, 19:15 UTC

An issue was discovered on Samsung mobile devices with any (before October 2019 for S9 or Note9) software. Attackers can manipulate the IMEI. The Samsung ID is SVE-2019-15435 (October 2019).

CVE-2020-10835 samsung vulnerability CVSS: 10.0 24 Mar 2020, 18:15 UTC

An issue was discovered on Samsung mobile devices with any (before February 2020 for Exynos modem chipsets) software. There is a buffer overflow in baseband CP message decoding. The Samsung IDs are SVE-2019-15816 and SVE-2019-15817 (February 2020).

CVE-2020-10255 samsung vulnerability CVSS: 9.3 10 Mar 2020, 16:15 UTC

Modern DRAM chips (DDR4 and LPDDR4 after 2015) are affected by a vulnerability in deployment of internal mitigations against RowHammer attacks known as Target Row Refresh (TRR), aka the TRRespass issue. To exploit this vulnerability, the attacker needs to create certain access patterns to trigger bit flips on affected memory modules, aka a Many-sided RowHammer attack. This means that, even when chips advertised as RowHammer-free are used, attackers may still be able to conduct privilege-escalation attacks against the kernel, conduct privilege-escalation attacks against the Sudo binary, and achieve cross-tenant virtual-machine access by corrupting RSA keys. The issue affects chips produced by SK Hynix, Micron, and Samsung. NOTE: tracking DRAM supply-chain issues is not straightforward because a single product model from a single vendor may use DRAM chips from different manufacturers.

CVE-2015-7890 samsung vulnerability CVSS: 4.9 12 Feb 2020, 15:15 UTC

Multiple buffer overflows in the esa_write function in /dev/seirenin the Exynos Seiren Audio driver, as used in Samsung S6 Edge, allow local users to cause a denial of service (memory corruption) via a large (1) buffer or (2) size parameter.

CVE-2019-6744 samsung vulnerability CVSS: 2.1 10 Feb 2020, 21:53 UTC

This vulnerability allows local attackers to disclose sensitive information on affected installations of Samsung Knox 1.2.02.39 on Samsung Galaxy S9 build G9600ZHS3ARL1 Secure Folder. An attacker must first obtain physical access to the device in order to exploit this vulnerability. The specific flaws exists within the the handling of the lock screen for Secure Folder. The issue results from the lack of proper validation that a user has correctly authenticated. An attacker can leverage this vulnerability to disclose the contents of the secure container. Was ZDI-CAN-7381.

CVE-2019-20451 samsung vulnerability CVSS: 10.0 10 Feb 2020, 15:15 UTC

The HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading RebootSystem.lnk and requesting /REBOOTSYSTEM or /RESTARTVNC. (Authentication is required but an XML file containing credentials can be downloaded.)

CVE-2019-19273 samsung vulnerability CVSS: 7.2 04 Feb 2020, 16:15 UTC

On Samsung mobile devices with O(8.0) and P(9.0) software and an Exynos 8895 chipset, RKP (aka the Samsung Hypervisor EL2 implementation) allows arbitrary memory write operations. The Samsung ID is SVE-2019-16265.

CVE-2018-16272 samsung vulnerability CVSS: 7.5 22 Jan 2020, 14:15 UTC

The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-Fi interface, due to the lack of its D-Bus security policy configurations. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

CVE-2018-16271 samsung vulnerability CVSS: 3.3 22 Jan 2020, 14:15 UTC

The wemail_consumer_service (from the built-in application wemail) in Samsung Galaxy Gear series allows an unprivileged process to manipulate a user's mailbox, due to improper D-Bus security policy configurations. An arbitrary email can also be sent from the mailbox via the paired smartphone. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

CVE-2018-16270 samsung vulnerability CVSS: 5.0 22 Jan 2020, 14:15 UTC

Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged process to dump Bluetooth HCI packets to an arbitrary file path.

CVE-2018-16269 samsung vulnerability CVSS: 5.0 22 Jan 2020, 13:15 UTC

The wnoti system service in Samsung Galaxy Gear series allows an unprivileged process to take over the internal notification message data, due to improper D-Bus security policy configurations. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

CVE-2012-3810 samsung vulnerability CVSS: 5.0 09 Jan 2020, 22:15 UTC

Samsung Kies before 2.5.0.12094_27_11 has registry modification.

CVE-2012-3809 samsung vulnerability CVSS: 5.0 09 Jan 2020, 22:15 UTC

Samsung Kies before 2.5.0.12094_27_11 has arbitrary directory modification.

CVE-2012-3808 samsung vulnerability CVSS: 5.0 09 Jan 2020, 22:15 UTC

Samsung Kies before 2.5.0.12094_27_11 has arbitrary file modification.

CVE-2012-3807 samsung vulnerability CVSS: 7.5 09 Jan 2020, 22:15 UTC

Samsung Kies before 2.5.0.12094_27_11 has arbitrary file execution.

CVE-2012-3806 samsung vulnerability CVSS: 5.0 09 Jan 2020, 22:15 UTC

Samsung Kies before 2.5.0.12094_27_11 contains a NULL pointer dereference vulnerability which could allow remote attackers to perform a denial of service.

CVE-2013-4764 samsung vulnerability CVSS: 2.1 27 Dec 2019, 17:15 UTC

Samsung Galaxy S3/S4 exposes an unprotected component allowing an unprivileged app to send arbitrary SMS texts to arbitrary destinations without permission.

CVE-2013-4763 samsung vulnerability CVSS: 2.1 27 Dec 2019, 17:15 UTC

Samsung Galaxy S3/S4 exposes an unprotected component allowing arbitrary SMS text messages without requesting permission.

CVE-2015-7892 samsung vulnerability CVSS: 4.6 09 Dec 2019, 20:15 UTC

Stack-based buffer overflow in the m2m1shot_compat_ioctl32 function in the Samsung m2m1shot driver framework, as used in Samsung S6 Edge, allows local users to have unspecified impact via a large data.buf_out.num_planes value in an ioctl call.

CVE-2019-15465 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Pro Android device with a build fingerprint of samsung/j7y17lteubm/j7y17lte:8.1.0/M1AJQ/J730GMUBS6BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15464 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Pro Android device with a build fingerprint of samsung/j7y17lteub/j7y17lte:8.1.0/M1AJQ/J730GUBS6BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15463 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung j7popeltemtr Android device with a build fingerprint of samsung/j7popeltemtr/j7popeltemtr:8.1.0/M1AJQ/J727T1UVS5BSC2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15462 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Duo Android device with a build fingerprint of samsung/j7duolteub/j7duolte:8.0.0/R16NW/J720MUBS3ASB2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15461 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Neo Android device with a build fingerprint of samsung/j7velteub/j7velte:8.1.0/M1AJQ/J701MUBS6BSB4:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15460 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Neo Android device with a build fingerprint of samsung/j7veltedx/j7velte:8.1.0/M1AJQ/J701FXVS6BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15459 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Neo Android device with a build fingerprint of samsung/j7velteub/j7velte:8.1.0/M1AJQ/J701MUBS6BSB3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15458 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Neo Android device with a build fingerprint of samsung/j7veltedx/j7velte:8.1.0/M1AJQ/J701FXXS6BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15457 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J6 Android device with a build fingerprint of samsung/j6ltexx/j6lte:8.0.0/R16NW/J600FNXXU3ASC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15456 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J6 Android device with a build fingerprint of samsung/j6ltexx/j6lte:8.0.0/R16NW/J600FNXXU3ASC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15455 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J5 Android device with a build fingerprint of samsung/j5y17ltexx/j5y17lte:8.1.0/M1AJQ/J530FXXU3BRL1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15454 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J4 Android device with a build fingerprint of samsung/j4lteub/j4lte:8.0.0/R16NW/J400MUBU2ARL4:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15453 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J4 Android device with a build fingerprint of samsung/j4lteub/j4lte:8.0.0/R16NW/J400MUBS2ASC2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15452 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J3 Android device with a build fingerprint of samsung/j3y17ltedx/j3y17lte:8.0.0/R16NW/J330GDXS3BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=6010000, versionName=6.1.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15451 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J3 Android device with a build fingerprint of samsung/j3y17ltedx/j3y17lte:8.0.0/R16NW/J330GDXS3BSC1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=6010000, versionName=6.1.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15450 samsung vulnerability CVSS: 7.2 14 Nov 2019, 17:15 UTC

The Samsung j3popeltecan Android device with a build fingerprint of samsung/j3popeltevl/j3popeltecan:8.1.0/M1AJQ/J327WVLS3BSA2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15449 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Edge Android device with a build fingerprint of samsung/hero2ltexx/hero2lte:8.0.0/R16NW/G935FXXS4ESC3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15448 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Edge Android device with a build fingerprint of samsung/hero2ltexx/hero2lte:8.0.0/R16NW/G935FXXS4ESC3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15447 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Edge Android device with a build fingerprint of samsung/hero2ltexx/hero2lte:8.0.0/R16NW/G935FXXS4ESC3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15446 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Android device with a build fingerprint of samsung/heroltexx/herolte:8.0.0/R16NW/G930FXXU3ESAC:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15445 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Android device with a build fingerprint of samsung/heroltexx/herolte:8.0.0/R16NW/G930FXXS4ESC3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15444 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung S7 Android device with a build fingerprint of samsung/heroltexx/herolte:8.0.0/R16NW/G930FXXS4ESC3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15443 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J7 Max Android device with a build fingerprint of samsung/j7maxlteins/j7maxlte:8.1.0/M1AJQ/G615FXXU2BSB1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15442 samsung vulnerability CVSS: 7.2 14 Nov 2019, 17:15 UTC

The Samsung on7xelteskt Android device with a build fingerprint of samsung/on7xelteskt/on7xelteskt:8.1.0/M1AJQ/G610SKSU2CSB1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15441 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung on7xeltelgt Android device with a build fingerprint of samsung/on7xeltelgt/on7xeltelgt:8.1.0/M1AJQ/G610LKLU2CSB1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15440 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung J5 Android device with a build fingerprint of samsung/on5xeltedx/on5xelte:8.0.0/R16NW/G570YDXU2CRL1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=6010000, versionName=6.1.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15439 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung XCover4 Android device with a build fingerprint of samsung/xcover4ltedo/xcover4lte:8.1.0/M1AJQ/G390YDXU2BSA1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15438 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung XCover4 Android device with a build fingerprint of samsung/xcover4ltedo/xcover4lte:8.1.0/M1AJQ/G390YDXU2BSA1:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15437 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung XCover4 Android device with a build fingerprint of samsung/xcover4ltexx/xcover4lte:8.1.0/M1AJQ/G390FXXU3BSA2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000100, versionName=7.0.1.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15436 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung A8+ Android device with a build fingerprint of samsung/jackpot2ltexx/jackpot2lte:8.0.0/R16NW/A730FXXS4BSC2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15435 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung A7 Android device with a build fingerprint of samsung/a7y17ltexx/a7y17lte:8.0.0/R16NW/A720FXXU7CSC2:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15434 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung A5 Android device with a build fingerprint of samsung/a5y17ltexx/a5y17lte:8.0.0/R16NW/A520FXXS8CSC5:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-15433 samsung vulnerability CVSS: 4.6 14 Nov 2019, 17:15 UTC

The Samsung A3 Android device with a build fingerprint of samsung/a3y17ltedx/a3y17lte:8.0.0/R16NW/A320YDXU4CSB3:user/release-keys contains a pre-installed app with a package name of com.samsung.android.themecenter app (versionCode=7000000, versionName=7.0.0.0) that allows other pre-installed apps to perform app installation via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.

CVE-2019-16401 samsung vulnerability CVSS: 3.3 06 Nov 2019, 23:15 UTC

Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon 835, Baseband: G955USQU5CRG3), Samsung Galaxy S3 (Android version: 4.3, Build Number: JSS15J.I9300XXUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: I9300XXUGNA8), and Samsung Galaxy Note 2 (Android version: 4.3, Build Number: JSS15J.I9300XUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: N7100DDUFND1) devices allow injection of AT+CIMI and AT+CGSN over Bluetooth, leaking sensitive information such as IMSI, IMEI, call status, call setup stage, internet service status, signal strength, current roaming status, battery level, and call held status.

CVE-2019-16400 samsung vulnerability CVSS: 3.3 06 Nov 2019, 23:15 UTC

Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon 835, Baseband: G955USQU5CRG3), Samsung Galaxy S3 (Android version: 4.3, Build Number: JSS15J.I9300XXUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: I9300XXUGNA8), and Samsung Galaxy Note 2 (Android version: 4.3, Build Number: JSS15J.I9300XUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: N7100DDUFND1) devices allow attackers to send AT commands over Bluetooth, resulting in several Denial of Service (DoS) attacks.

CVE-2019-17668 samsung vulnerability CVSS: 4.4 17 Oct 2019, 12:15 UTC

Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involving a third-party screen protector.

CVE-2019-16253 samsung vulnerability CVSS: 7.2 25 Sep 2019, 23:15 UTC

The Text-to-speech Engine (aka SamsungTTS) application before 3.0.02.7 and 3.0.00.101 for Android allows a local attacker to escalate privileges, e.g., to system privileges. The Samsung case ID is 101755.

CVE-2019-16256 samsung vulnerability CVSS: 7.5 12 Sep 2019, 13:15 UTC

Some Samsung devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or execute certain commands, via SIM Toolkit (STK) instructions in an SMS message, aka Simjacker.

CVE-2018-20135 samsung vulnerability CVSS: 6.8 07 Jun 2019, 16:29 UTC

Samsung Galaxy Apps before 4.4.01.7 allows modification of the hostname used for load balancing on installations of applications through a man-in-the-middle attack. An attacker may trick Galaxy Apps into using an arbitrary hostname for which the attacker can provide a valid SSL certificate, and emulate the API of the app store to modify existing apps at installation time. The specific flaw involves an HTTP method to obtain the load-balanced hostname that enforces SSL only after obtaining a hostname from the load balancer, and a missing app signature validation in the application XML. An attacker can exploit this vulnerability to achieve Remote Code Execution on the device. The Samsung ID is SVE-2018-12071.

CVE-2019-12762 samsung vulnerability CVSS: 1.9 06 Jun 2019, 20:29 UTC

Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anomalies via a radio signal between 198 kHz and 203 kHz, as demonstrated by a transmitter and antenna hidden just beneath the surface of a coffee-shop table, aka Ghost Touch.

CVE-2019-6741 samsung vulnerability CVSS: 5.8 03 Jun 2019, 19:29 UTC

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S9 prior to January 2019 Security Update (SMR-JAN-2019 - SVE-2018-13467). User interaction is required to exploit this vulnerability in that the target must connect to a wireless network. The specific flaw exists within the captive portal. By manipulating HTML, an attacker can force a page redirection. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7476.

CVE-2019-6740 samsung vulnerability CVSS: 6.8 03 Jun 2019, 19:29 UTC

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S9 prior to January 2019 Security Update (SMR-JAN-2019 - SVE-2018-13467). User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the ASN.1 parser. When parsing ASN.1 strings, the process does not properly validate the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7472.

CVE-2019-12315 samsung vulnerability CVSS: 4.3 24 May 2019, 16:29 UTC

Samsung SCX-824 printers allow a reflected Cross-Site-Scripting (XSS) vulnerability that can be triggered by using the "print from file" feature, as demonstrated by the sws/swsAlert.sws?popupid=successMsg msg parameter.

CVE-2019-12087 samsung vulnerability CVSS: 4.9 14 May 2019, 03:29 UTC

Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent application. For example, the victim becomes stuck in a launcher with their Secure Folder locked. NOTE: the researcher mentions "the Samsung Security Team considered this issue as no/little security impact.

CVE-2019-7421 samsung vulnerability CVSS: 4.3 21 Mar 2019, 16:01 UTC

XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in multiple parameters: contextpath and basedURL.

CVE-2019-7420 samsung vulnerability CVSS: 4.3 21 Mar 2019, 16:01 UTC

XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/networkinformationView.sws" in the tabName parameter.

CVE-2019-7419 samsung vulnerability CVSS: 4.3 21 Mar 2019, 16:01 UTC

XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple parameters: ruiFw_id, ruiFw_pid, ruiFw_title.

CVE-2019-7418 samsung vulnerability CVSS: 4.3 21 Mar 2019, 16:01 UTC

XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple parameters: flag, frame, func, and Nfunc.

CVE-2018-14745 samsung vulnerability CVSS: 5.8 21 Mar 2019, 16:00 UTC

Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to overwrite kernel memory due to improper validation of the ring buffer read pointer. The Samsung ID is SVE-2018-12029.

CVE-2018-14856 samsung vulnerability CVSS: 5.8 17 Dec 2018, 19:29 UTC

Buffer overflow in dhd_bus_flow_ring_create_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allow an attacker (who has obtained code execution on the Wi-Fi) chip to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785.

CVE-2018-14855 samsung vulnerability CVSS: 5.8 17 Dec 2018, 19:29 UTC

Buffer overflow in dhd_bus_flow_ring_flush_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 allow an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785.

CVE-2018-14854 samsung vulnerability CVSS: 5.8 17 Dec 2018, 19:29 UTC

Buffer overflow in dhd_bus_flow_ring_delete_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allow an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785.

CVE-2018-14853 samsung vulnerability CVSS: 3.3 17 Dec 2018, 19:29 UTC

A NULL pointer dereference in dhd_prot_txdata_write_flush in drivers/net/wireless/bcmdhd4358/dhd_msgbuf.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device to reboot. The Samsung ID is SVE-2018-11783.

CVE-2018-14852 samsung vulnerability CVSS: 5.8 17 Dec 2018, 19:29 UTC

Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause invalid accesses to operating system memory due to improper validation of the network interface index provided by the Wi-Fi chip's firmware.

CVE-2018-12038 samsung vulnerability CVSS: 1.9 20 Nov 2018, 19:29 UTC

An issue was discovered on Samsung 840 EVO devices. Vendor-specific commands may allow access to the disk-encryption key.

CVE-2018-12037 samsung vulnerability CVSS: 1.9 20 Nov 2018, 19:29 UTC

An issue was discovered on Samsung 840 EVO and 850 EVO devices (only in "ATA high" mode, not vulnerable in "TCG" or "ATA max" mode), Samsung T3 and T5 portable drives, and Crucial MX100, MX200 and MX300 devices. Absence of a cryptographic link between the password and the Disk Encryption Key allows attackers with privileged access to SSD firmware full access to encrypted data.

CVE-2018-17969 samsung vulnerability CVSS: 5.0 03 Oct 2018, 19:29 UTC

Samsung SCX-6545X V2.00.03.01 03-23-2012 devices allows remote attackers to discover cleartext credentials via iso.3.6.1.4.1.236.11.5.11.81.10.1.5.0 and iso.3.6.1.4.1.236.11.5.11.81.10.1.6.0 SNMP requests.

CVE-2018-14318 samsung vulnerability CVSS: 6.8 24 Sep 2018, 23:29 UTC

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S8 G950FXXU1AQL5. User interaction is required to exploit this vulnerability in that the target must have their cellular radios enabled. The specific flaw exists within the handling of IPCP headers. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length, stack-based buffer. An attacker can leverage this vulnerability to execute code under the context of the baseband processor. Was ZDI-CAN-5368.

CVE-2018-11614 samsung vulnerability CVSS: 6.5 24 Sep 2018, 23:29 UTC

This vulnerability allows remote attackers to escalate privileges on vulnerable installations of Samsung Members Fixed in version 2.4.25. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of Intents. The issue lies in the ability to send an Intent that would not otherwise be reachable. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5361.

CVE-2018-10502 samsung vulnerability CVSS: 4.6 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Galaxy Apps Fixed in version 4.2.18.2. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of a staging mode. The issue lies in the ability to change the configuration based on the presence of a file in an user-controlled location. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5359.

CVE-2018-10501 samsung vulnerability CVSS: 4.4 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Notes Fixed in version 2.0.02.31. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of ZIP files. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5358.

CVE-2018-10500 samsung vulnerability CVSS: 4.4 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Galaxy Apps Fixed in version 6.4.0.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of push messages. The issue lies in the ability to start an activity with controlled arguments. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5331.

CVE-2018-10499 samsung vulnerability CVSS: 4.4 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy Apps Fixed in version 6.4.0.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of URLs. The issue lies in the lack of proper validation of user-supplied data, which can allow arbitrary JavaScript to execute. An attacker can leverage this vulnerability to install applications under the context of the current user. Was ZDI-CAN-5330.

CVE-2018-10498 samsung vulnerability CVSS: 2.1 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to disclose sensitive information on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of file:/// URIs. The issue lies in the lack of proper validation of user-supplied data, which can allow for reading arbitrary files. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges. Was ZDI-CAN-5329.

CVE-2018-10497 samsung vulnerability CVSS: 4.6 24 Sep 2018, 23:29 UTC

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of EML files. The issue results from the lack of proper validation of user-supplied data, which can allow arbitrary JavaScript to execute. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5328.

CVE-2018-10496 samsung vulnerability CVSS: 6.8 24 Sep 2018, 23:29 UTC

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Internet Browser Fixed in version 6.4.0.15. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of TypedArray objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code under the context of the current process. Was ZDI-CAN-5326.

CVE-2018-3915 samsung vulnerability CVSS: 7.2 21 Sep 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy call overflows the destination buffer, which has a size of 64 bytes. An attacker can send an arbitrarily long "bucket" value in order to exploit this vulnerability.

CVE-2018-3914 samsung vulnerability CVSS: 7.2 21 Sep 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy call overflows the destination buffer, which has a size of 2000 bytes. An attacker can send an arbitrarily long "sessionToken" value in order to exploit this vulnerability.

CVE-2018-3913 samsung vulnerability CVSS: 7.2 21 Sep 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy call overflows the destination buffer, which has a size of 32 bytes. An attacker can send an arbitrarily long "accessKey" value in order to exploit this vulnerability.

CVE-2018-3906 samsung vulnerability CVSS: 7.2 21 Sep 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of a database field in video-core's HTTP server of Samsung SmartThings Hub. The video-core process insecurely extracts the shard.videoHostURL field from its SQLite database, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3894 samsung vulnerability CVSS: 9.0 21 Sep 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The strncpy call overflows the destination buffer, which has a size of 52 bytes. An attacker can send an arbitrarily long "startTime" value in order to exploit this vulnerability.

CVE-2018-3877 samsung vulnerability CVSS: 9.0 21 Sep 2018, 14:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The strncpy overflows the destination buffer, which has a size of 160 bytes. An attacker can send an arbitrarily long "directory" value in order to exploit this vulnerability.

CVE-2018-3876 samsung vulnerability CVSS: 9.0 21 Sep 2018, 14:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The strncpy overflows the destination buffer, which has a size of 64 bytes. An attacker can send an arbitrarily long "bucket" value in order to exploit this vulnerability.

CVE-2018-3874 samsung vulnerability CVSS: 9.0 21 Sep 2018, 14:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The strncpy overflows the destination buffer, which has a size of 32 bytes. An attacker can send an arbitrarily long "accessKey" value in order to exploit this vulnerability.

CVE-2018-3873 samsung vulnerability CVSS: 9.0 21 Sep 2018, 14:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The strncpy overflows the destination buffer, which has a size of 128 bytes. An attacker can send an arbitrarily long "secretKey" value in order to exploit this vulnerability.

CVE-2018-3865 samsung vulnerability CVSS: 9.0 20 Sep 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long "cameraIp" value in order to exploit this vulnerability.

CVE-2018-3864 samsung vulnerability CVSS: 9.0 20 Sep 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long "password" value in order to exploit this vulnerability.

CVE-2018-3875 samsung vulnerability CVSS: 9.0 10 Sep 2018, 19:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. The strncpy overflows the destination buffer, which has a size of 2,000 bytes. An attacker can send an arbitrarily long "sessionToken" value in order to exploit this vulnerability.

CVE-2018-3897 samsung vulnerability CVSS: 9.0 10 Sep 2018, 15:29 UTC

An exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub with Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. The strncpy call overflows the destination buffer, which has a size of 52 bytes. An attacker can send an arbitrarily long "callbackUrl" value in order to exploit this vulnerability.

CVE-2018-3896 samsung vulnerability CVSS: 9.0 10 Sep 2018, 15:29 UTC

An exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub with Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. The strncpy call overflows the destination buffer, which has a size of 52 bytes. An attacker can send an arbitrarily long "correlationId" value in order to exploit this vulnerability.

CVE-2018-3916 samsung vulnerability CVSS: 7.2 28 Aug 2018, 20:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The strcpy call overflows the destination buffer, which has a size of 136 bytes. An attacker can send an arbitrarily long 'directory' value in order to exploit this vulnerability. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3908 samsung vulnerability CVSS: 6.4 28 Aug 2018, 19:29 UTC

An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17. The video-core process incorrectly handles pipelined HTTP requests, which allows successive requests to overwrite the previously parsed HTTP method, URL and body. With the implementation of the on_body callback, defined by sub_41734, an attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3895 samsung vulnerability CVSS: 9.0 28 Aug 2018, 19:29 UTC

An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 Firmware version 0.20.17. The strncpy call overflows the destination buffer, which has a size of 52 bytes. An attacker can send an arbitrarily long 'endTime' value in order to exploit this vulnerability. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3926 samsung vulnerability CVSS: 4.9 28 Aug 2018, 17:29 UTC

An exploitable integer underflow vulnerability exists in the ZigBee firmware update routine of the hubCore binary of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The hubCore process incorrectly handles malformed files existing in its data directory, leading to an infinite loop, which eventually causes the process to crash. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3927 samsung vulnerability CVSS: 4.3 27 Aug 2018, 15:29 UTC

An exploitable information disclosure vulnerability exists in the crash handler of the hubCore binary of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. When hubCore crashes, Google Breakpad is used to record minidumps, which are sent over an insecure HTTPS connection to the backtrace.io service, leading to the exposure of sensitive data. An attacker can impersonate the remote backtrace.io server in order to trigger this vulnerability.

CVE-2018-3918 samsung vulnerability CVSS: 6.4 27 Aug 2018, 15:29 UTC

An exploitable vulnerability exists in the remote servers of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The hubCore process listens on port 39500 and relays any unauthenticated messages to SmartThings' remote servers, which incorrectly handle camera IDs for the 'sync' operation, leading to arbitrary deletion of cameras. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3904 samsung vulnerability CVSS: 9.0 27 Aug 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the camera 'update' feature of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3893 samsung vulnerability CVSS: 9.0 27 Aug 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3909 samsung vulnerability CVSS: 6.4 24 Aug 2018, 00:29 UTC

An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly handles pipelined HTTP requests, which allows successive requests to overwrite the previously parsed HTTP method, 'onmessagecomplete' callback. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3907 samsung vulnerability CVSS: 6.4 24 Aug 2018, 00:29 UTC

An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly handles pipelined HTTP requests, which allows successive requests to overwrite the previously parsed HTTP method, 'on_url' callback. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3911 samsung vulnerability CVSS: 5.0 23 Aug 2018, 22:29 UTC

An exploitable HTTP header injection vulnerability exists in the remote servers of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The hubCore process listens on port 39500 and relays any unauthenticated message to SmartThings' remote servers, which insecurely handle JSON messages, leading to partially controlled requests generated toward the internal video-core process. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3880 samsung vulnerability CVSS: 9.0 23 Aug 2018, 22:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the database 'find-by-cameraId' functionality of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly handles existing records inside its SQLite database, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3872 samsung vulnerability CVSS: 9.0 23 Aug 2018, 22:29 UTC

An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly extracts the videoHostUrl field from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3866 samsung vulnerability CVSS: 9.0 23 Aug 2018, 22:29 UTC

An exploitable buffer overflow vulnerability exists in the samsungWifiScan handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. The strcpy at [8] overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long 'callbackUrl' value in order to exploit this vulnerability.

CVE-2018-3856 samsung vulnerability CVSS: 9.0 23 Aug 2018, 22:29 UTC

An exploitable vulnerability exists in the smart cameras RTSP configuration of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The device incorrectly handles spaces in the URL field, leading to an arbitrary operating system command injection. An attacker can send a series of HTTP requests to trigger this vulnerability.

CVE-2018-3912 samsung vulnerability CVSS: 6.9 23 Aug 2018, 18:29 UTC

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts the fields from the "shard" table of its SQLite database, leading to a buffer overflow on the stack. The strcpy call overflows the destination buffer, which has a size of 128 bytes. An attacker can send an arbitrarily long "secretKey" value in order to exploit this vulnerability.

CVE-2018-3925 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the remote video-host communication of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process insecurely parses the AWSELB cookie while communicating with remote video-host servers, leading to a buffer overflow on the heap. An attacker able to impersonate the remote HTTP servers could trigger this vulnerability.

CVE-2018-3919 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process insecurely extracts the fields from the "clips" table of its SQLite database, leading to a buffer overflow on the stack. An attacker can send a series of HTTP requests to trigger this vulnerability.

CVE-2018-3917 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts the fields from the "shard" table of its SQLite database, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. The strcpy call overflows the destination buffer, which has a size of 16 bytes. An attacker can send an arbitrarily long "region" value in order to exploit this vulnerability.

CVE-2018-3905 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly extracts the "state" field from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3903 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. The memcpy call overflows the destination buffer, which has a size of 512 bytes. An attacker can send an arbitrarily long "url" value in order to overwrite the saved-PC with 0x42424242.

CVE-2018-3902 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

An exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly extracts the URL field from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2018-3879 samsung vulnerability CVSS: 6.5 23 Aug 2018, 15:29 UTC

An exploitable JSON injection vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly parses the user-controlled JSON payload, leading to a JSON injection which in turn leads to a SQL injection in the video-core database. An attacker can send a series of HTTP requests to trigger this vulnerability.

CVE-2018-3878 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. A strncpy overflows the destination buffer, which has a size of 16 bytes. An attacker can send an arbitrarily long "region" value in order to exploit this vulnerability.

CVE-2018-3867 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

An exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback notification of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly handles the answer received from a smart camera, leading to a buffer overflow on the stack. An attacker can send a series of HTTP requests to trigger this vulnerability.

CVE-2018-3863 samsung vulnerability CVSS: 9.0 23 Aug 2018, 15:29 UTC

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. A strcpy overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long "user" value in order to exploit this vulnerability.

CVE-2018-14908 samsung vulnerability CVSS: 6.8 03 Aug 2018, 18:29 UTC

Samsung Syncthru Web Service V4.05.61 is vulnerable to CSRF on every request, as demonstrated by sws.application/printinformation/printReportSetupView.sws for a "Print emails sent" action.

CVE-2018-14904 samsung vulnerability CVSS: 4.3 03 Aug 2018, 18:29 UTC

Samsung Syncthru Web Service V4.05.61 is vulnerable to Multiple unauthenticated XSS attacks on several parameters, as demonstrated by ruiFw_pid.

CVE-2018-11689 samsung vulnerability CVSS: 4.3 14 Jun 2018, 20:29 UTC

Web Viewer for Hanwha DVR 2.17 and Smart Viewer in Samsung Web Viewer for Samsung DVR are vulnerable to XSS via the /cgi-bin/webviewer_login_page data3 parameter. (The same Web Viewer codebase was transitioned from Samsung to Hanwha.)

CVE-2018-10751 samsung vulnerability CVSS: 5.4 29 May 2018, 20:29 UTC

A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of the WbXml payload. This is due to an integer overflow in memory allocation for this string. The Samsung ID is SVE-2018-11463.

CVE-2018-9143 samsung vulnerability CVSS: 10.0 30 Mar 2018, 08:29 UTC

On Samsung mobile devices with M(6.0) and N(7.x) software, a heap overflow in the sensorhub binder service leads to code execution in a privileged process, aka SVE-2017-10991.

CVE-2018-9142 samsung vulnerability CVSS: 7.6 30 Mar 2018, 08:29 UTC

On Samsung mobile devices with N(7.x) software, attackers can install an arbitrary APK in the Secure Folder SD Card area because of faulty validation of a package signature and package name, aka SVE-2017-10932.

CVE-2018-9141 samsung vulnerability CVSS: 9.3 30 Mar 2018, 08:29 UTC

On Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software, Gallery allows remote attackers to execute arbitrary code via a BMP file with a crafted resolution, aka SVE-2017-11105.

CVE-2018-9140 samsung vulnerability CVSS: 4.3 30 Mar 2018, 08:29 UTC

On Samsung mobile devices with M(6.0) software, the Email application allows XSS via an event attribute and arbitrary file loading via a src attribute, aka SVE-2017-10747.

CVE-2018-9139 samsung vulnerability CVSS: 10.0 30 Mar 2018, 08:29 UTC

On Samsung mobile devices with N(7.x) software, a buffer overflow in the vision service allows code execution in a privileged process via a large frame size, aka SVE-2017-11165.

CVE-2018-6019 samsung vulnerability CVSS: 4.3 06 Mar 2018, 20:29 UTC

Samsung Display Solutions App before 3.02 for Android allows man-in-the-middle attackers to spoof B2B content by leveraging failure to use encryption during information transmission.

CVE-2017-10963 samsung vulnerability CVSS: 4.3 20 Feb 2018, 19:29 UTC

In Knox SDS IAM (Identity Access Management) and EMM (Enterprise Mobility Management) 16.11 on Samsung mobile devices, a man-in-the-middle attacker can install any application into the Knox container (without the user's knowledge) by inspecting network traffic from a Samsung server and injecting content at a certain point in the update sequence. This installed application can further leak information stored inside the Knox container to the outside world.

CVE-2018-5210 samsung vulnerability CVSS: 9.3 04 Jan 2018, 06:29 UTC

On Samsung mobile devices with N(7.x) software and Exynos chipsets, attackers can conduct a Trustlet stack overflow attack for arbitrary TEE code execution, in conjunction with a brute-force attack to discover unlock information (PIN, password, or pattern). The Samsung ID is SVE-2017-10733.

CVE-2017-18020 samsung vulnerability CVSS: 7.2 04 Jan 2018, 06:29 UTC

On Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software and Exynos chipsets, attackers can execute arbitrary code in the bootloader because S Boot omits a size check during a copy of ramfs data to memory. The Samsung ID is SVE-2017-10598.

CVE-2017-17859 samsung vulnerability CVSS: 4.3 27 Dec 2017, 17:08 UTC

Samsung Internet Browser 6.2.01.12 allows remote attackers to bypass the Same Origin Policy, and conduct UXSS attacks to obtain sensitive information, via vectors involving an IFRAME element inside XSLT data in one part of an MHTML file. Specifically, JavaScript code in another part of this MHTML file does not have a document.domain value corresponding to the domain that is hosting the MHTML file, but instead has a document.domain value corresponding to an arbitrary URL within the content of the MHTML file.

CVE-2017-17692 samsung vulnerability CVSS: 5.0 21 Dec 2017, 19:29 UTC

Samsung Internet Browser 5.4.02.3 allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that redirects to a child tab and rewrites the innerHTML property.

CVE-2015-7268 samsung vulnerability CVSS: 1.9 27 Nov 2017, 22:29 UTC

Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives, when used on Windows and operating in Opal mode on Lenovo ThinkPad T440s laptops with BIOS 2.32 or ThinkPad W541 laptops with BIOS 2.21, or in Opal or eDrive mode on Dell Latitude E6410 laptops with BIOS A16 or Latitude E6430 laptops with BIOS A16, allow physically proximate attackers to bypass self-encrypting drive (SED) protection by triggering a soft reset and booting from an alternative OS, aka a "Forced Restart Attack."

CVE-2015-7267 samsung vulnerability CVSS: 1.9 27 Nov 2017, 22:29 UTC

Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives, when in sleep mode and operating in Opal or eDrive mode on Lenovo ThinkPad T440s laptops with BIOS 2.32; ThinkPad W541 laptops with BIOS 2.21; Dell Latitude E6410 laptops with BIOS A16; or Latitude E6430 laptops with BIOS A16, allow physically proximate attackers to bypass self-encrypting drive (SED) protection by leveraging failure to detect when SATA drives are unplugged in Sleep Mode, aka a "Hot Plug attack."

CVE-2017-14262 samsung vulnerability CVSS: 9.3 11 Sep 2017, 09:29 UTC

On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via certain szUserName JSON data to cgi-bin/main-cgi, and login to the device with that hash in the szUserPasswd parameter.

CVE-2015-7896 samsung vulnerability CVSS: 4.3 24 Aug 2017, 20:29 UTC

LibQJpeg in the Samsung Galaxy S6 before the October 2015 MR allows remote attackers to cause a denial of service (memory corruption and SIGSEGV) via a crafted image file.

CVE-2015-1801 samsung vulnerability CVSS: 10.0 24 Aug 2017, 20:29 UTC

The samsung_extdisp driver in the Samsung S4 (GT-I9500) I9500XXUEMK8 kernel 3.4 and earlier allows attackers to cause a denial of service (memory corruption) or gain privileges.

CVE-2015-1800 samsung vulnerability CVSS: 5.0 24 Aug 2017, 20:29 UTC

The samsung_extdisp driver in the Samsung S4 (GT-I9500) I9500XXUEMK8 kernel 3.4 and earlier allows attackers to potentially obtain sensitive information.

CVE-2015-7894 samsung vulnerability CVSS: 6.8 09 Aug 2017, 18:29 UTC

The DCMProvider service in Samsung LibQjpeg on a Samsung SM-G925V device running build number LRX22G.G925VVRU1AOE2 allows remote attackers to cause a denial of service (segmentation fault and process crash) and execute arbitrary code via a crafted JPG.

CVE-2015-7891 samsung vulnerability CVSS: 4.4 02 Aug 2017, 19:29 UTC

Race condition in the ioctl implementation in the Samsung Graphics 2D driver (aka /dev/fimg2d) in Samsung devices with Android L(5.0/5.1) allows local users to trigger memory errors by leveraging definition of g2d_lock and g2d_unlock lock macros as no-ops, aka SVE-2015-4598.

CVE-2015-7898 samsung vulnerability CVSS: 2.1 27 Jun 2017, 20:29 UTC

Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).

CVE-2015-7895 samsung vulnerability CVSS: 2.1 27 Jun 2017, 20:29 UTC

Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).

CVE-2017-3218 samsung vulnerability CVSS: 8.3 21 Jun 2017, 20:29 UTC

Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates.

CVE-2015-7888 samsung vulnerability CVSS: 7.8 07 Jun 2017, 14:29 UTC

Directory traversal vulnerability in the WifiHs20UtilityService on the Samsung S6 Edge LRX22G.G925VVRU1AOE2 allows remote attackers to overwrite or create arbitrary files as the system-level user via a .. (dot dot) in the name of a file, compressed into a zipped file named cred.zip, and downloaded to /sdcard/Download.

CVE-2015-5473 samsung vulnerability CVSS: 10.0 01 Jun 2017, 16:29 UTC

Multiple directory traversal vulnerabilities in Samsung SyncThru 6 before 1.0 allow remote attackers to delete arbitrary files via unspecified parameters to (1) upload/updateDriver or (2) upload/addDriver or to execute arbitrary code with SYSTEM privileges via unspecified parameters to (3) uploadCloning.html, (4) fileupload.html, (5) uploadFirmware.html, or (6) upload/driver.

CVE-2017-7978 samsung vulnerability CVSS: 5.0 19 Apr 2017, 22:59 UTC

Samsung Android devices with L(5.0/5.1), M(6.0), and N(7.x) software allow attackers to obtain sensitive information by reading a world-readable log file after an unexpected reboot. The Samsung ID is SVE-2017-8290.

CVE-2016-4032 samsung vulnerability CVSS: 2.1 13 Apr 2017, 16:59 UTC

Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I9192 build I9192XXUBNB1 (Galaxy S4 mini), GT-I9195 build I9195XXUCOL1 (Galaxy S4 mini LTE), and GT-I9505 build I9505XXUHOJ2 (Galaxy S4) devices do not block AT+USBDEBUG and AT+WIFIVALUE, which allows attackers to modify Android settings by leveraging AT access, aka SVE-2016-5301.

CVE-2016-4031 samsung vulnerability CVSS: 4.6 13 Apr 2017, 16:59 UTC

Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I9192 build I9192XXUBNB1 (Galaxy S4 mini), GT-I9195 build I9195XXUCOL1 (Galaxy S4 mini LTE), and GT-I9505 build I9505XXUHOJ2 (Galaxy S4) devices allow attackers to send AT commands by plugging the device into a Linux host, aka SVE-2016-5301.

CVE-2016-4030 samsung vulnerability CVSS: 4.6 13 Apr 2017, 16:59 UTC

Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I9192 build I9192XXUBNB1 (Galaxy S4 mini), GT-I9195 build I9195XXUCOL1 (Galaxy S4 mini LTE), and GT-I9505 build I9505XXUHOJ2 (Galaxy S4) devices have unintended availability of the modem in USB configuration number 2 within the secure lockscreen state, allowing an attacker to make phone calls, send text messages, or issue commands, aka SVE-2016-5301.

CVE-2016-2567 samsung vulnerability CVSS: 2.1 13 Apr 2017, 16:59 UTC

secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to bypass URL filtering by inserting an "exceptional URL" in the query string, as demonstrated by the http://should-have-been-filtered.example.com/?http://google.com URL.

CVE-2016-2566 samsung vulnerability CVSS: 7.5 13 Apr 2017, 16:59 UTC

Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-2015-5081.

CVE-2016-2565 samsung vulnerability CVSS: 2.1 13 Apr 2017, 16:59 UTC

Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to read sent e-mail messages, aka SVE-2015-5081.

CVE-2016-2036 samsung vulnerability CVSS: 2.1 13 Apr 2017, 16:59 UTC

The getURL function in drivers/secfilter/urlparser.c in secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to trigger a NULL pointer dereference via a "GET HTTP/1.1" request, aka SVE-2016-5036.

CVE-2015-8780 samsung vulnerability CVSS: 6.9 13 Apr 2017, 16:59 UTC

Samsung wssyncmlnps before 2015-10-31 allows directory traversal in a Kies restore, aka ZipFury.

CVE-2015-7893 samsung vulnerability CVSS: 6.8 11 Apr 2017, 19:59 UTC

SecEmailUI in Samsung Galaxy S6 does not sanitize HTML email content, allows remote attackers to execute arbitrary JavaScript.

CVE-2015-0864 samsung vulnerability CVSS: 7.9 27 Mar 2017, 17:59 UTC

Samsung Account (AKA com.osp.app.signin) before 1.6.0069 and 2.x before 2.1.0069 allows man-in-the-middle attackers to obtain sensitive information and execute arbitrary code.

CVE-2015-0863 samsung vulnerability CVSS: 7.9 27 Mar 2017, 17:59 UTC

GALAXY Apps (aka Samsung Apps, Samsung Updates, or com.sec.android.app.samsungapps) before 14120405.03.012 allows man-in-the-middle attackers to obtain sensitive information and execute arbitrary code.

CVE-2015-5729 samsung vulnerability CVSS: 5.0 23 Mar 2017, 20:59 UTC

The Soft Access Point (AP) feature in Samsung Smart TVs X10P, X12, X14H, X14J, and NT14U and Xpress M288OFW printers generate weak WPA2 PSK keys, which makes it easier for remote attackers to obtain sensitive information or bypass authentication via a brute-force attack.

CVE-2017-5538 samsung vulnerability CVSS: 10.0 23 Mar 2017, 16:59 UTC

The kbase_dispatch function in arm/t7xx/r5p0/mali_kbase_core_linux.c in the GPU driver on Samsung devices with M(6.0) and N(7.0) software and Exynos AP chipsets allows attackers to have unspecified impact via unknown vectors, which trigger an out-of-bounds read, aka SVE-2016-6362.

CVE-2017-5927 samsung vulnerability CVSS: 5.0 27 Feb 2017, 07:59 UTC

Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern ARM processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.

CVE-2017-5926 samsung vulnerability CVSS: 5.0 27 Feb 2017, 07:59 UTC

Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern AMD processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.

CVE-2017-5925 samsung vulnerability CVSS: 5.0 27 Feb 2017, 07:59 UTC

Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern Intel processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.

CVE-2016-4547 samsung vulnerability CVSS: 5.0 13 Feb 2017, 18:59 UTC

Samsung devices with Android KK(4.4), L(5.0/5.1), or M(6.0) allow attackers to cause a denial of service (system crash) via a crafted system call to TvoutService_C.

CVE-2016-4546 samsung vulnerability CVSS: 2.1 13 Feb 2017, 18:59 UTC

Samsung devices with Android KK(4.4) or L(5.0/5.1) allow local users to cause a denial of service (IAndroidShm service crash) via crafted data in a service call.

CVE-2016-4038 samsung vulnerability CVSS: 7.2 01 Feb 2017, 15:59 UTC

Array index error in the msm_sensor_config function in kernel/SM-G9008V_CHN_KK_Opensource/Kernel/drivers/media/platform/msm/camera_v2/sensor/msm_sensor.c in Samsung devices with Android KK(4.4) or L and an APQ8084, MSM8974, or MSM8974pro chipset allows local users to have unspecified impact via the gpio_config.gpio_name value.

CVE-2016-6604 samsung vulnerability CVSS: 10.0 30 Jan 2017, 22:59 UTC

NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows attackers to have unspecified impact via unknown vectors. The Samsung ID is SVE-2016-6382.

CVE-2016-3996 samsung vulnerability CVSS: 4.3 27 Jan 2017, 20:59 UTC

ClipboardDataMgr in Samsung KNOX 1.0.0 and 2.3.0 does not properly check the caller, which allows local users to read KNOX clipboard data via a crafted application.

CVE-2016-1920 samsung vulnerability CVSS: 4.3 27 Jan 2017, 20:59 UTC

Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installing a certificate and running a VPN service.

CVE-2016-1919 samsung vulnerability CVSS: 1.9 27 Jan 2017, 20:59 UTC

Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitive information by leveraging knowledge of the TIMA key and a brute-force attack.

CVE-2016-9279 samsung vulnerability CVSS: 5.0 18 Jan 2017, 17:59 UTC

Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows attackers to obtain sensitive information via unspecified vectors. The Samsung ID is SVE-2016-6853.

CVE-2016-9278 samsung vulnerability CVSS: 4.9 18 Jan 2017, 17:59 UTC

The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local users to cause a denial of service (kernel panic) via a crafted ioctl command. The Samsung ID is SVE-2016-6736.

CVE-2016-6527 samsung vulnerability CVSS: 9.3 18 Jan 2017, 17:59 UTC

The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (crash and reboot) or possibly gain privileges via a malformed serializable object.

CVE-2016-6526 samsung vulnerability CVSS: 9.3 18 Jan 2017, 17:59 UTC

The SpamCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (crash and reboot) or possibly gain privileges via a malformed serializable object.

CVE-2017-5351 samsung vulnerability CVSS: 7.8 12 Jan 2017, 06:59 UTC

Samsung Note devices with KK(4.4), L(5.0/5.1), and M(6.0) software allow attackers to crash the system by creating an arbitrarily large number of active VR service threads. The Samsung ID is SVE-2016-7650.

CVE-2017-5350 samsung vulnerability CVSS: 5.0 12 Jan 2017, 06:59 UTC

Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allow attackers to crash systemUI by leveraging incomplete exception handling. The Samsung ID is SVE-2016-7122.

CVE-2017-5217 samsung vulnerability CVSS: 7.1 09 Jan 2017, 08:59 UTC

Installing a zero-permission Android application on certain Samsung Android devices with KK(4.4), L(5.0/5.1), and M(6.0) software can continually crash the system_server process in the Android OS. The zero-permission app will create an active install session for a separate app that it has embedded within it. The active install session of the embedded app is performed using the android.content.pm.PackageInstaller class and its nested classes in the Android API. The active install session will write the embedded APK file to the /data/app directory, but the app will not be installed since third-party applications cannot programmatically install apps. Samsung has modified AOSP in order to accelerate the parsing of APKs by introducing the com.android.server.pm.PackagePrefetcher class and its nested classes. These classes will parse the APKs present in the /data/app directory and other directories, even if the app is not actually installed. The embedded APK that was written to the /data/app directory via the active install session has a very large but valid AndroidManifest.xml file. Specifically, the AndroidManifest.xml file contains a very large string value for the name of a permission-tree that it declares. When system_server tries to parse the APK file of the embedded app from the active install session, it will crash due to an uncaught error (i.e., java.lang.OutOfMemoryError) or an uncaught exception (i.e., std::bad_alloc) because of memory constraints. The Samsung Android device will encounter a soft reboot due to a system_server crash, and this action will keep repeating since parsing the APKs in the /data/app directory as performed by the system_server process is part of the normal boot process. The Samsung ID is SVE-2016-6917.

CVE-2016-9967 samsung vulnerability CVSS: 10.0 16 Dec 2016, 09:59 UTC

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7121.

CVE-2016-9966 samsung vulnerability CVSS: 10.0 16 Dec 2016, 09:59 UTC

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7120.

CVE-2016-9965 samsung vulnerability CVSS: 10.0 16 Dec 2016, 09:59 UTC

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7119.

CVE-2016-9567 samsung vulnerability CVSS: 4.3 23 Nov 2016, 11:59 UTC

The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restrict setmDNIeScreenCurtain API calls, enabling attackers to control a device's screen. This can be exploited via a crafted application to eavesdrop after phone shutdown or record a conversation. The Samsung ID is SVE-2016-6343.

CVE-2016-9277 samsung vulnerability CVSS: 7.8 11 Nov 2016, 19:59 UTC

Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors involving APIs and an activity that computes an out-of-bounds array index, aka SVE-2016-6906.

CVE-2016-7160 samsung vulnerability CVSS: 7.8 03 Nov 2016, 10:59 UTC

A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activities is not properly restricted, leading to a SystemUI crash and device restart, aka SVE-2016-6248.

CVE-2016-0729 samsung vulnerability CVSS: 7.5 07 Apr 2016, 21:59 UTC

Multiple buffer overflows in (1) internal/XMLReader.cpp, (2) util/XMLURL.cpp, and (3) util/XMLUri.cpp in the XML Parser library in Apache Xerces-C before 3.1.3 allow remote attackers to cause a denial of service (segmentation fault or memory corruption) or possibly execute arbitrary code via a crafted document.

CVE-2016-1346 samsung vulnerability CVSS: 7.1 06 Apr 2016, 23:59 UTC

The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710 devices allows remote attackers to cause a denial of service (panic and reboot) via a crafted sequence of IPv6 packets, aka Bug ID CSCuu46673.

CVE-2016-1350 samsung vulnerability CVSS: 7.8 26 Mar 2016, 01:59 UTC

Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCuj23293.

CVE-2016-1349 samsung vulnerability CVSS: 7.8 26 Mar 2016, 01:59 UTC

The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410.

CVE-2016-1348 samsung vulnerability CVSS: 7.8 26 Mar 2016, 01:59 UTC

Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821.

CVE-2016-1344 samsung vulnerability CVSS: 7.1 26 Mar 2016, 01:59 UTC

The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417.

CVE-2016-1010 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0963 and CVE-2016-0993.

CVE-2016-1005 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (uninitialized pointer dereference and memory corruption) via crafted MPEG-4 data, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, and CVE-2016-1002.

CVE-2016-1002 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, and CVE-2016-1005.

CVE-2016-1001 samsung vulnerability CVSS: 6.8 12 Mar 2016, 15:59 UTC

Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors.

CVE-2016-1000 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, and CVE-2016-0999.

CVE-2016-0999 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, and CVE-2016-1000.

CVE-2016-0998 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0997 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0996 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in the setInterval method in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via crafted arguments, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0995 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0994 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code by using the actionCallMethod opcode with crafted arguments, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0993 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0963 and CVE-2016-1010.

CVE-2016-0992 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-1002, and CVE-2016-1005.

CVE-2016-0991 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0990, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0990 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0988, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0989 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVE-2016-0988 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0987, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0987 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0988, CVE-2016-0990, CVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997, CVE-2016-0998, CVE-2016-0999, and CVE-2016-1000.

CVE-2016-0986 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVE-2016-0963 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0993 and CVE-2016-1010.

CVE-2016-0962 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVE-2016-0961 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVE-2016-0960 samsung vulnerability CVSS: 9.3 12 Mar 2016, 15:59 UTC

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVE-2015-0718 samsung vulnerability CVSS: 7.8 03 Mar 2016, 22:59 UTC

Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted TCP packets to a device that has a TIME_WAIT TCP session, aka Bug ID CSCub70579.

CVE-2016-1329 samsung vulnerability CVSS: 10.0 03 Mar 2016, 11:59 UTC

Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows remote attackers to obtain root privileges via a (1) TELNET or (2) SSH session, aka Bug ID CSCuy25800.

CVE-2013-7447 samsung vulnerability CVSS: 4.3 17 Feb 2016, 15:59 UTC

Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash) via a large image file, which triggers a large memory allocation.

CVE-2016-1319 samsung vulnerability CVSS: 5.0 09 Feb 2016, 03:59 UTC

Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified Contact Center Express 11.0(1); and Unity Connection 10.5(2) store a cleartext encryption key, which allows local users to obtain sensitive information via unspecified vectors, aka Bug ID CSCuv85958.

CVE-2016-1308 samsung vulnerability CVSS: 6.5 07 Feb 2016, 11:59 UTC

SQL injection vulnerability in Cisco Unified Communications Manager 10.5(2.13900.9) allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCux99227.

CVE-2016-1302 samsung vulnerability CVSS: 9.0 07 Feb 2016, 11:59 UTC

Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) and 11.1 before 11.1(1j) allow remote authenticated users to bypass intended RBAC restrictions via crafted REST requests, aka Bug ID CSCut12998.

CVE-2015-8281 samsung vulnerability CVSS: 7.8 15 Jan 2016, 03:59 UTC

Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows attackers to bypass filesystem encryption via XOR calculations.

CVE-2015-8280 samsung vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to discover credentials by reading detailed error messages.

CVE-2015-8279 samsung vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files via a request to an unspecified PHP script.

CVE-2015-7897 samsung vulnerability CVSS: 7.5 16 Nov 2015, 19:59 UTC

The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge before G925VVRU4B0G9 allows remote attackers to gain privileges or cause a denial of service (memory corruption) via a crafted BMP image file.

CVE-2015-8040 samsung vulnerability CVSS: 6.8 02 Nov 2015, 19:59 UTC

The rtsp_getdlsendtime method in the CNC_Ctrl control in Samsung SmartViewer allows remote attackers to execute arbitrary code via an index value.

CVE-2015-8039 samsung vulnerability CVSS: 6.8 02 Nov 2015, 19:59 UTC

Samsung SmartViewer allows remote attackers to execute arbitrary code via unspecified vectors to the (1) DVRSetupSave method in the STWAxConfig control or (2) SendCustomPacket method in the STWAxConfigNVR control, which trigger an untrusted pointer dereference.

CVE-2015-4034 samsung vulnerability CVSS: 7.9 06 Jul 2015, 14:59 UTC

The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung Galaxy S5s allows remote attackers to execute arbitrary files via a crafted Parcelable object in a serialized MethodSpec object.

CVE-2015-4033 samsung vulnerability CVSS: 3.3 06 Jul 2015, 14:59 UTC

Samsung SBeam allows remote attackers to read arbitrary images by leveraging an NFC connection to access the HTTP server on port 15000.

CVE-2015-3435 samsung vulnerability CVSS: 10.0 01 May 2015, 15:59 UTC

Samsung Security Manager (SSM) before 1.31 allows remote attackers to execute arbitrary code by uploading a file with an HTTP (1) PUT or (2) MOVE request.

CVE-2015-0555 samsung vulnerability CVSS: 6.8 24 Feb 2015, 15:59 UTC

Buffer overflow in the XnsSdkDeviceIpInstaller.ocx ActiveX control in Samsung iPOLiS Device Manager 1.12.2 allows remote attackers to execute arbitrary code via a long string in the first argument to the (1) ReadConfigValue or (2) WriteConfigValue function.

CVE-2015-1499 samsung vulnerability CVSS: 8.5 16 Feb 2015, 15:59 UTC

The ActiveMQ Broker in Samsung Security Manager (SSM) before 1.31 allows remote attackers to delete arbitrary files, and consequently cause a denial of service, via a DELETE request.

CVE-2014-9266 samsung vulnerability CVSS: 6.8 08 Dec 2014, 16:59 UTC

The STWConfig ActiveX control in Samsung SmartViewer does not properly initialize a variable, which allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2014-9265 samsung vulnerability CVSS: 6.8 08 Dec 2014, 16:59 UTC

Stack-based buffer overflow in the BackupToAvi method in the CNC_Ctrl ActiveX control in Samsung SmartViewer allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2014-8346 samsung vulnerability CVSS: 7.8 24 Oct 2014, 10:55 UTC

The Remote Controls feature on Samsung mobile devices does not validate the source of lock-code data received over a network, which makes it easier for remote attackers to cause a denial of service (screen locking with an arbitrary code) by triggering unexpected Find My Mobile network traffic.

CVE-2014-3911 samsung vulnerability CVSS: 9.3 11 Jun 2014, 14:55 UTC

Samsung iPOLiS Device Manager before 1.8.7 allow remote attackers to execute arbitrary code via unspecified values to the (1) Start, (2) ChangeControlLocalName, (3) DeleteDeviceProfile, (4) FrameAdvanceReader, or other unknown method in the XNSSDKDEVICE.XnsSdkDeviceCtrlForIpInstaller.1 ActiveX control.

CVE-2014-3912 samsung vulnerability CVSS: 9.3 05 Jun 2014, 17:55 UTC

Stack-based buffer overflow in the FindConfigChildeKeyList method in the XNSSDKDEVICE.XnsSdkDeviceCtrlForIpInstaller.1 ActiveX control in Samsung iPOLiS Device Manager before 1.8.7 allows remote attackers to execute arbitrary code via a long value.

CVE-2012-6429 samsung vulnerability CVSS: 10.0 04 Apr 2014, 14:55 UTC

Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the password argument.

CVE-2013-3964 samsung vulnerability CVSS: 4.3 01 Oct 2013, 19:55 UTC

Cross-site scripting (XSS) vulnerability in Samsung SHR-5162, SHR-5082, and possibly other models, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

CVE-2013-3586 samsung vulnerability CVSS: 7.6 28 Aug 2013, 13:09 UTC

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

CVE-2013-3585 samsung vulnerability CVSS: 5.0 28 Aug 2013, 13:09 UTC

Samsung Web Viewer for Samsung DVR devices stores credentials in cleartext, which allows context-dependent attackers to obtain sensitive information via vectors involving (1) direct access to a file or (2) the user-setup web page.

CVE-2013-4890 samsung vulnerability CVSS: 7.8 23 Jul 2013, 11:03 UTC

The DMCRUIS/0.1 web server on the Samsung PS50C7700 TV allows remote attackers to cause a denial of service (daemon crash) via a long URI to TCP port 5600.

CVE-2012-6337 samsung vulnerability CVSS: 3.3 31 Dec 2012, 11:50 UTC

The Track My Mobile feature in the SamsungDive subsystem for Android on Samsung Galaxy devices shows the activation of remote tracking, which might allow physically proximate attackers to defeat a product-recovery effort by tampering with this feature or its location data.

CVE-2012-6334 samsung vulnerability CVSS: 2.9 31 Dec 2012, 11:50 UTC

The Track My Mobile feature in the SamsungDive subsystem for Android on Samsung Galaxy devices does not properly implement Location APIs, which allows physically proximate attackers to provide arbitrary location data via a "commonly available simple GPS location spoofer."

CVE-2012-6422 samsung vulnerability CVSS: 9.3 18 Dec 2012, 00:55 UTC

The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write arbitrary physical memory and gain privileges via a crafted application, as demonstrated by ExynosAbuse.

CVE-2012-5859 samsung vulnerability CVSS: 5.0 03 Dec 2012, 21:55 UTC

Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws/ssd.php.

CVE-2012-5858 samsung vulnerability CVSS: 4.3 03 Dec 2012, 21:55 UTC

Samsung Kies Air 2.1.207051 and 2.1.210161 relies on the IP address for authentication, which allows remote man-in-the-middle attackers to read arbitrary phone contents by spoofing or controlling the IP address.

CVE-2012-2990 samsung vulnerability CVSS: 9.3 24 Aug 2012, 20:55 UTC

The MASetupCaller ActiveX control before 1.4.2012.508 in MASetupCaller.dll in MarkAny ContentSAFER, as distributed in Samsung KIES before 2.3.2.12074_13_13, does not properly implement unspecified methods, which allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via a crafted HTML document.

CVE-2012-2980 samsung vulnerability CVSS: 7.1 21 Aug 2012, 10:46 UTC

The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC ChaCha, AT&T Status, HTC Desire Z, T-Mobile G2, T-Mobile myTouch 4G Slide, and Samsung Galaxy S stores touch coordinates in the dmesg buffer, which allows remote attackers to obtain sensitive information via a crafted application, as demonstrated by PIN numbers, telephone numbers, and text messages.

CVE-2012-4335 samsung vulnerability CVSS: 7.8 14 Aug 2012, 22:55 UTC

Samsung NET-i viewer 1.37.120316 allows remote attackers to cause a denial of service (infinite loop) via a negative size value in a TCP request to (1) NiwMasterService or (2) NiwStorageService. NOTE: some of these details are obtained from third party information.

CVE-2012-4334 samsung vulnerability CVSS: 10.0 14 Aug 2012, 22:55 UTC

The ConnectDDNS method in the (1) STWConfigNVR 1.1.13.15 and (2) STWConfig 1.1.14.13 ActiveX controls in Samsung NET-i viewer 1.37.120316 allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: some of these details are obtained from third party information.

CVE-2012-4333 samsung vulnerability CVSS: 10.0 14 Aug 2012, 22:55 UTC

Multiple stack-based buffer overflows in the BackupToAvi method in the (1) UMS_Ctrl 1.5.1.1 and (2) UMS_Ctrl_STW 2.0.1.0 ActiveX controls in Samsung NET-i viewer 1.37.120316 allow remote attackers to execute arbitrary code via a long string in the fname parameter. NOTE: some of these details are obtained from third party information.

CVE-2012-4330 samsung vulnerability CVSS: 7.8 14 Aug 2012, 22:55 UTC

The Samsung D6000 TV and possibly other products allows remote attackers to cause a denial of service (crash) via a long string in certain fields, as demonstrated by the MAC address field, possibly a buffer overflow.

CVE-2012-4329 samsung vulnerability CVSS: 7.8 14 Aug 2012, 22:55 UTC

The Samsung D6000 TV and possibly other products allow remote attackers to cause a denial of service (continuous restart) via a crafted controller name.

CVE-2012-4250 samsung vulnerability CVSS: 9.3 13 Aug 2012, 18:55 UTC

Stack-based buffer overflow in the RequestScreenOptimization function in the XProcessControl.ocx ActiveX control in msls31.dll in Samsung NET-i viewer 1.37 allows remote attackers to execute arbitrary code via a long string in the first argument.

CVE-2012-3290 samsung vulnerability CVSS: 10.0 07 Jun 2012, 19:55 UTC

Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2012-1418 samsung vulnerability CVSS: 10.0 29 Feb 2012, 11:55 UTC

Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.60 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2012-0695 samsung vulnerability CVSS: 10.0 12 Jan 2012, 18:55 UTC

Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.27 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2011-4719 samsung vulnerability CVSS: 10.0 09 Dec 2011, 20:55 UTC

Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.63 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2011-4548 samsung vulnerability CVSS: 10.0 24 Nov 2011, 04:01 UTC

Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.44 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2011-3421 samsung vulnerability CVSS: 10.0 12 Sep 2011, 12:40 UTC

Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.125 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2011-3420 samsung vulnerability CVSS: 10.0 12 Sep 2011, 12:40 UTC

Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.157 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

CVE-2010-4284 samsung vulnerability CVSS: 7.5 09 May 2011, 22:55 UTC

SQL injection vulnerability in the authentication form in the integrated web server in the Data Management Server (DMS) before 1.4.3 in Samsung Integrated Management System allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

CVE-2008-4380 samsung vulnerability CVSS: 7.8 01 Oct 2008, 15:38 UTC

The web interface in Samsung DVR SHR2040 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, related to the filter for configuration properties and "/x" characters.

CVE-2007-3931 samsung vulnerability CVSS: 4.4 21 Jul 2007, 00:30 UTC

The wrap_setuid_third_party_application function in the installation script for the Samsung SCX-4200 Driver 2.00.95 adds setuid permissions to third party applications such as xsane and xscanimage, which allows local users to gain privileges.

CVE-2001-1177 samsung vulnerability CVSS: 6.2 17 Jul 2001, 04:00 UTC

ml85p in Samsung ML-85G GDI printer driver before 0.2.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.