Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2023-07-06 CVE-2023-30665 Out-of-bounds Read vulnerability in Samsung Android 11.0/12.0/13.0
Improper input validation vulnerability in OnOemServiceMode in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds read.
local
low complexity
samsung CWE-125
4.4
2023-07-06 CVE-2023-30666 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0/13.0
Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.
local
low complexity
samsung CWE-787
7.8
2023-07-06 CVE-2023-30667 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker to send broadcast with system privilege.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30668 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0/13.0
Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-07-06 CVE-2023-30669 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0/13.0
Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-07-06 CVE-2023-30670 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0/13.0
Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-07-06 CVE-2023-30671 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local attackers to downgrade installed application.
local
low complexity
samsung
5.5
2023-06-28 CVE-2023-21512 Incorrect Default Permissions vulnerability in Samsung Android 11.0/12.0/13.0
Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access permission.
local
low complexity
samsung CWE-276
3.3
2023-06-28 CVE-2023-21513 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition.
low complexity
samsung
6.8
2023-05-04 CVE-2023-21484 Improper Authentication vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation.
local
low complexity
samsung CWE-287
7.8