Vulnerabilities > Samsung > Android > High

DATE CVE VULNERABILITY TITLE RISK
2024-09-04 CVE-2024-34638 Improper Handling of Exceptional Conditions vulnerability in Samsung Android 12.0/13.0/14.0
Improper handling of exceptional conditions in ThemeCenter prior to SMR Sep-2024 Release 1 allows local attackers to delete non-preloaded applications.
local
low complexity
samsung CWE-755
7.1
2024-08-07 CVE-2024-34612 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34614 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34615 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34619 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
8.8
2024-08-07 CVE-2024-34620 Unspecified vulnerability in Samsung Android 13.0/14.0
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20888 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20890 Improper Authentication vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior.
low complexity
samsung CWE-287
8.8
2024-07-02 CVE-2024-20891 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20892 Improper Verification of Cryptographic Signature vulnerability in Samsung Android 12.0/13.0/14.0
Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors.
local
low complexity
samsung CWE-347
7.8