Vulnerabilities > Samsung > Android > 12.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-04 | CVE-2025-20891 | Out-of-bounds Read vulnerability in Samsung Android 12.0/13.0/14.0 Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. | 5.5 |
2025-02-04 | CVE-2025-20904 | Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0 Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to cause memory corruption. | 6.7 |
2025-02-04 | CVE-2025-20905 | Out-of-bounds Read vulnerability in Samsung Android 12.0/13.0/14.0 Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to read and write out-of-bounds memory. | 6.7 |
2025-02-04 | CVE-2025-20907 | Unspecified vulnerability in Samsung Android 12.0/13.0 Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find. | 4.4 |
2024-12-03 | CVE-2024-49410 | Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0 Out-of-bounds write in libswmfextractor.so prior to SMR Dec-2024 Release 1 allows local attackers to execute arbitrary code. | 7.8 |
2024-12-03 | CVE-2024-49411 | Path Traversal vulnerability in Samsung Android 12.0/13.0 Path Traversal in ThemeCenter prior to SMR Dec-2024 Release 1 allows physical attackers to copy apk files to arbitrary path with ThemeCenter privilege. | 4.6 |
2024-12-03 | CVE-2024-49414 | Unspecified vulnerability in Samsung Android 12.0/13.0 Authentication Bypass Using an Alternate Path in Dex Mode prior to SMR Dec-2024 Release 1 allows physical attackers to temporarily access to recent app list. low complexity samsung | 2.4 |
2024-12-03 | CVE-2024-49415 | Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0 Out-of-bound write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code. | 9.8 |
2024-11-06 | CVE-2024-34673 | Unspecified vulnerability in Samsung Android 12.0/13.0/14.0 Improper Input Validation in IpcProtocol in Modem prior to SMR Nov-2024 Release 1 allows local attackers to cause Denial-of-Service. | 5.5 |
2024-11-06 | CVE-2024-34674 | Unspecified vulnerability in Samsung Android 12.0/13.0/14.0 Improper access control in Contacts prior to SMR Nov-2024 Release 1 allows physical attackers to access data across multiple user profiles. low complexity samsung | 4.6 |