Lucene search

K

Samsung Mobile Devices Security Vulnerabilities

cve
cve

CVE-2023-30647

Heap out of bound write vulnerability in IpcRxUsimPhoneBookCapa of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary...

7.8CVSS

7.9AI Score

0.0004EPSS

2023-07-06 03:15 AM
9
cve
cve

CVE-2023-30652

Out of bounds read and write in callrunTspCmdNoRead of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary...

7.8CVSS

7.7AI Score

0.0004EPSS

2023-07-06 03:15 AM
6
cve
cve

CVE-2023-30657

Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged...

7.8CVSS

7.3AI Score

0.0004EPSS

2023-07-06 03:15 AM
4
cve
cve

CVE-2023-30658

Improper input validation vulnerability in DataProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged...

8.5CVSS

7.3AI Score

0.0004EPSS

2023-07-06 03:15 AM
8
cve
cve

CVE-2023-30640

Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change...

4.3CVSS

4AI Score

0.0004EPSS

2023-07-06 03:15 AM
6
cve
cve

CVE-2023-30645

Heap out of bound write vulnerability in IpcRxIncomingCBMsg of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary...

7.8CVSS

7.9AI Score

0.0004EPSS

2023-07-06 03:15 AM
8
cve
cve

CVE-2023-30642

Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to call privilege...

6.2CVSS

5.4AI Score

0.0004EPSS

2023-07-06 03:15 AM
10
cve
cve

CVE-2023-30644

Stack out of bound write vulnerability in CdmaSmsParser of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary...

7.8CVSS

7.9AI Score

0.0004EPSS

2023-07-06 03:15 AM
11
cve
cve

CVE-2023-30641

Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restricted user profile to access device owner's google account...

4.3CVSS

4.4AI Score

0.001EPSS

2023-07-06 03:15 AM
12
cve
cve

CVE-2023-30643

Missing authentication vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to delete arbitrary non-preloaded...

7.7CVSS

6.9AI Score

0.0004EPSS

2023-07-06 03:15 AM
9
cve
cve

CVE-2023-21513

Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific...

6.8CVSS

6.4AI Score

0.001EPSS

2023-06-28 09:15 PM
13
cve
cve

CVE-2023-21517

Heap out-of-bound write vulnerability in Exynos baseband prior to SMR Jun-2023 Release 1 allows remote attacker to execute arbitrary...

9.8CVSS

9.6AI Score

0.002EPSS

2023-06-28 09:15 PM
4
cve
cve

CVE-2023-21512

Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access...

3.3CVSS

3.9AI Score

0.0004EPSS

2023-06-28 09:15 PM
7
cve
cve

CVE-2023-21496

Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug...

6.1CVSS

5.5AI Score

0.0004EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21501

Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary...

8.2CVSS

7.7AI Score

0.0004EPSS

2023-05-04 09:15 PM
14
cve
cve

CVE-2023-21503

Potential buffer overflow vulnerability in mm_LteInterRatManagement.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory...

9.8CVSS

9.5AI Score

0.002EPSS

2023-05-04 09:15 PM
22
cve
cve

CVE-2023-21494

Potential buffer overflow vulnerability in auth api in mm_Authentication.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory...

9.8CVSS

9.5AI Score

0.001EPSS

2023-05-04 09:15 PM
12
cve
cve

CVE-2023-21497

Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the memory...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21498

Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
12
cve
cve

CVE-2023-21502

Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging...

7.8CVSS

7.6AI Score

0.0004EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21504

Potential buffer overflow vulnerability in mm_Plmncoordination.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory...

9.8CVSS

9.5AI Score

0.002EPSS

2023-05-04 09:15 PM
14
cve
cve

CVE-2023-21493

Improper access control vulnerability in SemShareFileProvider prior to SMR May-2023 Release 1 allows local attackers to access protected...

6.8CVSS

5.3AI Score

0.0004EPSS

2023-05-04 09:15 PM
18
cve
cve

CVE-2023-21495

Improper access control vulnerability in Knox Enrollment Service prior to SMR May-2023 Release 1 allow attacker install KSP app when device admin is...

5.5CVSS

5.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21499

Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary...

8.2CVSS

7.7AI Score

0.0004EPSS

2023-05-04 09:15 PM
14
cve
cve

CVE-2023-21491

Improper access control vulnerability in ThemeManager prior to SMR May-2023 Release 1 allows local attackers to write arbitrary files with system...

8.5CVSS

7.5AI Score

0.0004EPSS

2023-05-04 09:15 PM
15
cve
cve

CVE-2023-21492

Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass...

4.4CVSS

4.9AI Score

0.001EPSS

2023-05-04 09:15 PM
404
In Wild
cve
cve

CVE-2023-21500

Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet...

6CVSS

5.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
18
cve
cve

CVE-2023-21486

Improper export of android application components vulnerability in ImagePreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in...

5.3CVSS

4.5AI Score

0.001EPSS

2023-05-04 09:15 PM
15
cve
cve

CVE-2023-21489

Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary...

7.1CVSS

6.8AI Score

0.001EPSS

2023-05-04 09:15 PM
15
cve
cve

CVE-2023-21484

Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
15
cve
cve

CVE-2023-21485

Improper export of android application components vulnerability in VideoPreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in...

5.3CVSS

4.5AI Score

0.001EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21487

Improper access control vulnerability in Telephony framework prior to SMR May-2023 Release 1 allows local attackers to change a call...

5.1CVSS

4AI Score

0.0004EPSS

2023-05-04 09:15 PM
12
cve
cve

CVE-2023-21488

Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-05-04 09:15 PM
13
cve
cve

CVE-2023-21490

Improper access control in GearManagerStub prior to SMR May-2023 Release 1 allows a local attacker to delete applications installed by...

7.1CVSS

6.7AI Score

0.0004EPSS

2023-05-04 09:15 PM
14
cve
cve

CVE-2023-21456

Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrary file with system...

9CVSS

5.5AI Score

0.0004EPSS

2023-03-16 09:15 PM
24
cve
cve

CVE-2023-21460

Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the...

4.4CVSS

4.8AI Score

0.0004EPSS

2023-03-16 09:15 PM
21
cve
cve

CVE-2023-21461

Improper authorization vulnerability in AutoPowerOnOffConfirmDialog in Settings prior to SMR Mar-2023 Release 1 allows local attacker to turn device off via unprotected...

5.5CVSS

5.3AI Score

0.0004EPSS

2023-03-16 09:15 PM
17
cve
cve

CVE-2023-21459

Use after free vulnerability in decon driver prior to SMR Mar-2023 Release 1 allows attackers to cause memory access...

9.8CVSS

9.4AI Score

0.001EPSS

2023-03-16 09:15 PM
22
cve
cve

CVE-2023-21458

Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected...

6.2CVSS

4.1AI Score

0.0004EPSS

2023-03-16 09:15 PM
19
cve
cve

CVE-2023-21457

Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Bluetooth without related...

8.1CVSS

7.9AI Score

0.0004EPSS

2023-03-16 09:15 PM
16
cve
cve

CVE-2023-21455

Improper authorization implementation in Exynos baseband prior to SMR Mar-2023 Release 1 allows incorrect handling of unencrypted...

9.1CVSS

9AI Score

0.001EPSS

2023-03-16 09:15 PM
21
cve
cve

CVE-2023-21453

Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to protected...

6CVSS

5.3AI Score

0.0004EPSS

2023-03-16 09:15 PM
17
cve
cve

CVE-2023-21449

Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper...

5.5CVSS

5.2AI Score

0.0004EPSS

2023-03-16 09:15 PM
13
cve
cve

CVE-2023-21454

Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text history on the...

2.4CVSS

3.8AI Score

0.0004EPSS

2023-03-16 09:15 PM
11
cve
cve

CVE-2023-21452

Improper usage of implicit intent in Bluetooth prior to SMR Mar-2023 Release 1 allows attacker to get MAC address of connected...

3.3CVSS

4.1AI Score

0.0004EPSS

2023-03-16 09:15 PM
15
cve
cve

CVE-2023-21451

A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause memory...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-02-09 07:15 PM
21
cve
cve

CVE-2023-21438

Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by Secure...

2.4CVSS

3.7AI Score

0.0004EPSS

2023-02-09 07:15 PM
25
cve
cve

CVE-2023-21439

Improper input validation vulnerability in UwbDataTxStatusEvent prior to SMR Feb-2023 Release 1 allows attackers to launch certain...

8.5CVSS

7.5AI Score

0.0004EPSS

2023-02-09 07:15 PM
20
cve
cve

CVE-2023-21436

Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account...

3.3CVSS

4.1AI Score

0.0004EPSS

2023-02-09 07:15 PM
18
cve
cve

CVE-2023-21440

Improper access control vulnerability in WindowManagerService prior to SMR Feb-2023 Release 1 allows attackers to take a screen...

6.2CVSS

5.4AI Score

0.001EPSS

2023-02-09 07:15 PM
28
Total number of security vulnerabilities549