Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2023-08-10 CVE-2023-30696 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30697 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30698 Unspecified vulnerability in Samsung Android 13.0
Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege.
local
low complexity
samsung
5.5
2023-08-10 CVE-2023-30699 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attackers.
network
low complexity
samsung CWE-787
critical
9.8
2023-08-10 CVE-2023-30700 Unspecified vulnerability in Samsung Android 11.0/12.0
PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30701 Unspecified vulnerability in Samsung Android 11.0/12.0
PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access.
local
low complexity
samsung
5.5
2023-07-06 CVE-2023-30640 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change confiugration.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30641 Unspecified vulnerability in Samsung Android 13.0
Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restricted user profile to access device owner's google account data.
low complexity
samsung
4.3
2023-07-06 CVE-2023-30642 Improper Privilege Management vulnerability in Samsung Android 12.0/13.0
Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to call privilege function.
local
low complexity
samsung CWE-269
5.5
2023-07-06 CVE-2023-30643 Missing Authentication for Critical Function vulnerability in Samsung Android 11.0/12.0/13.0
Missing authentication vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to delete arbitrary non-preloaded applications.
local
low complexity
samsung CWE-306
7.1