Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-02 CVE-2024-20898 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-20899 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-34587 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
6.8
2024-07-02 CVE-2024-34588 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation?in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
6.5
2024-07-02 CVE-2024-34589 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
6.5
2024-07-02 CVE-2024-34590 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation?in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
4.3
2024-07-02 CVE-2024-34591 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
4.3
2024-07-02 CVE-2024-34592 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
4.3
2024-07-02 CVE-2024-34594 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-34601 Unspecified vulnerability in Samsung Galaxystore
Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launch unexported activities of GalaxyStore.
local
low complexity
samsung
5.3