Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2024-04-02 CVE-2024-20844 Out-of-bounds Write vulnerability in Samsung Android 12.0
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-04-02 CVE-2024-20845 Out-of-bounds Write vulnerability in Samsung Android 12.0
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-04-02 CVE-2024-20846 Out-of-bounds Write vulnerability in Samsung Android 12.0
Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-04-02 CVE-2024-20847 Unspecified vulnerability in Samsung Android 12.0/13.0
Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to read sdcard information.
local
low complexity
samsung
3.3
2024-04-02 CVE-2024-20848 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release 1 allows local attackers to write out-of-bounds memory.
local
low complexity
samsung CWE-787
7.8
2024-04-02 CVE-2024-20849 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-03-05 CVE-2024-20833 Use After Free vulnerability in Samsung Android 11.0/12.0
Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privilege to cause memory corruption.
local
high complexity
samsung CWE-416
6.4
2024-03-05 CVE-2023-52432 Out-of-bounds Write vulnerability in Samsung Android 13.0/14.0
Improper input validation in IpcTxSndSetLoopbackCtrl in libsec-ril prior to SMR Sep-2023 Release 1 allows local attackers to write out-of-bounds memory.
local
low complexity
samsung CWE-787
7.1
2024-03-05 CVE-2024-20829 Unspecified vulnerability in Samsung Internet 24.0
Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers to open an application without proper interaction.
network
low complexity
samsung
5.3
2024-03-05 CVE-2024-20830 Incorrect Default Permissions vulnerability in Samsung Android 11.0/12.0
Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.
local
low complexity
samsung CWE-276
5.3