Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-34608 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in PaymentManagerService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34609 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in VoiceNoteService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34610 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in ExtControlDeviceService prior to SMR Aug-2024 Release 1 allows local attackers to access protected data.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34611 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34612 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34614 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34615 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34616 Incorrect Default Permissions vulnerability in Samsung Android 12.0/13.0/14.0
Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.
local
low complexity
samsung CWE-276
5.5
2024-08-07 CVE-2024-34617 Incorrect Default Permissions vulnerability in Samsung Android 14.0
Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.
local
low complexity
samsung CWE-276
3.3
2024-08-07 CVE-2024-34618 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.
local
low complexity
samsung
3.3