Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2024-05-07 CVE-2024-20859 Unspecified vulnerability in Samsung Android 12.0/13.0
Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pictures without privilege.
local
low complexity
samsung
5.5
2024-05-07 CVE-2024-20860 Unspecified vulnerability in Samsung Android 14.0
Improper export of android application components vulnerability in TelephonyUI prior to SMR May-2024 Release 1 allows local attackers to reboot the device without proper permission.
local
low complexity
samsung
3.3
2024-05-07 CVE-2024-20861 Use After Free vulnerability in Samsung Android 12.0/13.0
Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause memory corruption.
local
low complexity
samsung CWE-416
6.7
2024-05-07 CVE-2024-20862 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-05-07 CVE-2024-20863 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-05-07 CVE-2024-20864 Unspecified vulnerability in Samsung Android 14.0
Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to monitor system resources.
local
low complexity
samsung
5.5
2024-05-07 CVE-2024-20865 Unspecified vulnerability in Samsung Android 12.0/13.0
Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images.
low complexity
samsung
6.8
2024-05-07 CVE-2024-20866 Unspecified vulnerability in Samsung Android 12.0/13.0
Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step.
low complexity
samsung
6.6
2024-04-02 CVE-2024-20842 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.
local
low complexity
samsung CWE-787
6.7
2024-04-02 CVE-2024-20843 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7