Vulnerabilities > Samsung > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-30733 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.
local
low complexity
samsung CWE-787
7.8
2023-09-06 CVE-2023-30707 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper input validation vulnerability in FileProviderStatusReceiver in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows local attackers to delete arbitrary files with Samsung Keyboard privilege.
local
low complexity
samsung
7.1
2023-09-06 CVE-2023-30708 Improper Authentication vulnerability in Samsung Android 11.0/12.0
Improper authentication in SecSettings prior to SMR Sep-2023 Release 1 allows attacker to access Captive Portal Wi-Fi in Reactivation Lock status.
network
low complexity
samsung CWE-287
7.5
2023-09-06 CVE-2023-30710 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Knox AI prior to SMR Sep-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2023-09-06 CVE-2023-30712 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.
local
low complexity
samsung CWE-20
7.8
2023-08-10 CVE-2023-30679 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control in HDCP trustlet prior to SMR Aug-2023 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung
7.8
2023-08-10 CVE-2023-30680 Improper Privilege Management vulnerability in Samsung Android 12.0/13.0
Improper privilege management vulnerability in MMIGroup prior to SMR Aug-2023 Release 1 allows code execution with privilege.
local
low complexity
samsung CWE-269
7.8
2023-08-10 CVE-2023-30681 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30686 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-08-10 CVE-2023-30687 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8