Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2024-05-07 CVE-2024-20861 Use After Free vulnerability in Samsung Android 12.0/13.0
Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause memory corruption.
local
low complexity
samsung CWE-416
6.7
2024-05-07 CVE-2024-20862 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-05-07 CVE-2024-20863 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-05-07 CVE-2024-20864 Unspecified vulnerability in Samsung Android 14.0
Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to monitor system resources.
local
low complexity
samsung
5.5
2024-05-07 CVE-2024-20865 Unspecified vulnerability in Samsung Android 12.0/13.0
Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images.
low complexity
samsung
6.8
2024-05-07 CVE-2024-20866 Unspecified vulnerability in Samsung Android 12.0/13.0
Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step.
low complexity
samsung
6.6
2024-04-02 CVE-2024-20842 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.
local
low complexity
samsung CWE-787
6.7
2024-04-02 CVE-2024-20843 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-04-02 CVE-2024-20844 Out-of-bounds Write vulnerability in Samsung Android 12.0
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-04-02 CVE-2024-20845 Out-of-bounds Write vulnerability in Samsung Android 12.0
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8