Vulnerabilities > Samsung > Android > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-34619 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
8.8
2024-08-07 CVE-2024-34620 Unspecified vulnerability in Samsung Android 13.0/14.0
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20888 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20890 Improper Authentication vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior.
low complexity
samsung CWE-287
8.8
2024-07-02 CVE-2024-20891 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-20892 Improper Verification of Cryptographic Signature vulnerability in Samsung Android 12.0/13.0/14.0
Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors.
local
low complexity
samsung CWE-347
7.8
2024-07-02 CVE-2024-20893 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption.
local
low complexity
samsung CWE-787
7.8
2024-07-02 CVE-2024-20901 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds memory.
local
low complexity
samsung CWE-787
7.8
2024-07-02 CVE-2024-34585 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2024-07-02 CVE-2024-34593 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
8.8