Vulnerabilities > Samsung > Galaxy S6 > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2016-11038 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
An issue was discovered on Samsung mobile devices with software through 2016-04-05 (incorporating the Samsung Professional Audio SDK).
network
low complexity
google samsung CWE-119
7.5
2017-04-13 CVE-2016-2566 SQL Injection vulnerability in Samsung Galaxy S6 Firmware G920Fxxu2Coh2
Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-2015-5081.
network
low complexity
samsung CWE-89
7.5
2016-10-31 CVE-2016-7991 7PK - Errors vulnerability in Google Android
On Samsung Galaxy S4 through S7 devices, the "omacp" app ignores security information embedded in the OMACP messages resulting in remote unsolicited WAP Push SMS messages being accepted, parsed, and handled by the device, leading to unauthorized configuration changes, a subset of SVE-2016-6542.
network
low complexity
google samsung CWE-388
7.8
2016-10-31 CVE-2016-7989 7PK - Security Features vulnerability in Google Android
On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message sent remotely triggers an unhandled ArrayIndexOutOfBoundsException in Samsung's implementation of the WifiServiceImpl class within wifi-service.jar.
network
low complexity
google samsung CWE-254
7.8
2016-10-31 CVE-2016-7988 Permission Issues vulnerability in Google Android
On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible for handling the com.[Samsung].android.intent.action.SET_WIFI intent leads to unsolicited configuration messages being handled by wifi-service.jar within the Android Framework, a subset of SVE-2016-6542.
network
low complexity
google samsung CWE-275
7.8
2015-11-16 CVE-2015-7897 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Galaxy S6
The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge before G925VVRU4B0G9 allows remote attackers to gain privileges or cause a denial of service (memory corruption) via a crafted BMP image file.
network
low complexity
samsung CWE-119
7.5