Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2023-08-10 CVE-2023-30693 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30694 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30696 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30697 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30698 Unspecified vulnerability in Samsung Android 13.0
Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege.
local
low complexity
samsung
5.5
2023-08-10 CVE-2023-30699 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attackers.
network
low complexity
samsung CWE-787
critical
9.8
2023-08-10 CVE-2023-30700 Unspecified vulnerability in Samsung Android 11.0/12.0
PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30701 Unspecified vulnerability in Samsung Android 11.0/12.0
PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access.
local
low complexity
samsung
5.5
2023-07-06 CVE-2023-30640 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change confiugration.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30641 Unspecified vulnerability in Samsung Android 13.0
Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restricted user profile to access device owner's google account data.
low complexity
samsung
4.3