Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2024-03-05 CVE-2024-20831 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Stack overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-03-05 CVE-2024-20832 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0
Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
6.7
2024-03-05 CVE-2024-20834 Unspecified vulnerability in Samsung Android 11.0/12.0
The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission.
local
low complexity
samsung
3.3
2024-03-05 CVE-2024-20835 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local attackers to execute privileged behaviors.
local
low complexity
samsung
7.8
2024-03-05 CVE-2024-20836 Out-of-bounds Read vulnerability in Samsung Android 11.0/12.0
Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024 Release 1 allows local attackers to read out of bounds memory.
local
low complexity
samsung CWE-125
5.5
2024-03-05 CVE-2024-20837 Unspecified vulnerability in Samsung Internet
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.
local
low complexity
samsung
5.3
2024-03-05 CVE-2024-20838 Unspecified vulnerability in Samsung Internet
Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.
local
low complexity
samsung
7.8
2024-03-05 CVE-2024-20839 Unspecified vulnerability in Samsung Voice Recorder
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers to access recording files on the lock screen.
low complexity
samsung
4.6
2024-03-05 CVE-2024-20840 Unspecified vulnerability in Samsung Voice Recorder
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers using hardware keyboard to use VoiceRecorder on the lock screen.
low complexity
samsung
2.4
2024-03-05 CVE-2024-20841 Incorrect Default Permissions vulnerability in Samsung Account
Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.
local
low complexity
samsung CWE-276
5.5