Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2024-06-04 CVE-2024-20880 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows physical attackers to overwrite memory.
low complexity
samsung CWE-787
6.8
2024-06-04 CVE-2024-20881 Unspecified vulnerability in Samsung Android 12.0/13.0
Improper input validation vulnerability in chnactiv TA prior to SMR Jun-2024 Release 1 allows local privileged attackers lead to potential arbitrary code execution.
local
low complexity
samsung
6.7
2024-06-04 CVE-2024-20882 Out-of-bounds Read vulnerability in Samsung Android 12.0/13.0
Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary data access.
low complexity
samsung CWE-125
4.6
2024-06-04 CVE-2024-20883 Unspecified vulnerability in Samsung Android 14.0
Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.
local
low complexity
samsung
7.8
2024-06-04 CVE-2024-20884 Unspecified vulnerability in Samsung Android 14.0
Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.
local
low complexity
samsung
7.8
2024-06-04 CVE-2024-20885 Unspecified vulnerability in Samsung Android 14.0
Improper component protection vulnerability in Samsung Dialer prior to SMR May-2024 Release 1 allows local attackers to make a call without proper permission.
local
low complexity
samsung
3.3
2024-05-07 CVE-2024-20855 Unspecified vulnerability in Samsung Android 14.0
Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attackers to access unlocked screen for a while.
low complexity
samsung
2.4
2024-05-07 CVE-2024-20856 Improper Authentication vulnerability in Samsung Android 14.0
Improper Authentication vulnerability in Secure Folder prior to SMR May-2024 Release 1 allows physical attackers to access Secure Folder without proper authentication in a specific scenario.
low complexity
samsung CWE-287
4.3
2024-05-07 CVE-2024-20857 Unspecified vulnerability in Samsung Android 12.0/13.0
Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.
local
low complexity
samsung
5.5
2024-05-07 CVE-2024-20858 Unspecified vulnerability in Samsung Android 12.0/13.0
Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.
local
low complexity
samsung
5.5