Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2025-02-04 CVE-2025-20881 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in accessing buffer storing the decoded video frames in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege.
local
low complexity
samsung CWE-787
7.8
2025-02-04 CVE-2025-20882 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in accessing uninitialized memory for svc1td in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege.
local
low complexity
samsung CWE-787
7.8
2025-02-04 CVE-2025-20883 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in SoundPicker prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.
low complexity
samsung
4.6
2025-02-04 CVE-2025-20884 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in Samsung Message prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.
low complexity
samsung
4.6
2025-02-04 CVE-2025-20885 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to cause memory corruption.
local
low complexity
samsung CWE-787
6.7
2025-02-04 CVE-2025-20886 Insecure Storage of Sensitive Information vulnerability in Samsung Android 12.0/13.0/14.0
Inclusion of sensitive information in test code in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to get test key.
local
low complexity
samsung CWE-922
4.4
2025-02-04 CVE-2025-20887 Out-of-bounds Read vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory.
local
low complexity
samsung CWE-125
5.5
2025-02-04 CVE-2025-20888 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege.
local
low complexity
samsung CWE-787
7.8
2025-02-04 CVE-2025-20889 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory.
local
low complexity
samsung CWE-787
5.5
2025-02-04 CVE-2025-20890 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege.
local
low complexity
samsung CWE-787
7.8