Vulnerabilities > Samsung > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-02 CVE-2024-20894 Improper Handling of Exceptional Conditions vulnerability in Samsung Android 12.0/13.0/14.0
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers to bypass authentication under certain condition.
low complexity
samsung CWE-755
4.3
2024-07-02 CVE-2024-20895 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-20896 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-20897 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-20898 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-20899 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
local
low complexity
samsung
5.5
2024-07-02 CVE-2024-34587 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
6.8
2024-07-02 CVE-2024-34588 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation?in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
6.5
2024-07-02 CVE-2024-34589 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
6.5
2024-07-02 CVE-2024-34590 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation?in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service.
network
low complexity
samsung
4.3