Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2023-05-04 CVE-2023-21502 Improper Input Validation vulnerability in Samsung Android 12.0/13.0
Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging commands.
local
low complexity
samsung CWE-20
7.8
2023-05-04 CVE-2023-21503 Classic Buffer Overflow vulnerability in Samsung Android 13.0
Potential buffer overflow vulnerability in mm_LteInterRatManagement.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
network
low complexity
samsung CWE-120
critical
9.8
2023-05-04 CVE-2023-21504 Classic Buffer Overflow vulnerability in Samsung Android 11.0/12.0/13.0
Potential buffer overflow vulnerability in mm_Plmncoordination.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
network
low complexity
samsung CWE-120
critical
9.8
2023-05-04 CVE-2023-21505 Unspecified vulnerability in Samsung Core Services
Improper access control in Samsung Core Service prior to version 2.1.00.36 allows attacker to write arbitrary file in sandbox.
network
low complexity
samsung
8.6
2023-05-04 CVE-2023-21506 Out-of-bounds Write vulnerability in Samsung Blockchain Keystore
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-05-04 CVE-2023-21507 Out-of-bounds Read vulnerability in Samsung Blockchain Keystore
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
local
low complexity
samsung CWE-125
5.5
2023-05-04 CVE-2023-21508 Out-of-bounds Write vulnerability in Samsung Blockchain Keystore
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-05-04 CVE-2023-21509 Out-of-bounds Write vulnerability in Samsung Blockchain Keystore
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2023-05-04 CVE-2023-21510 Out-of-bounds Read vulnerability in Samsung Blockchain Keystore
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
local
low complexity
samsung CWE-125
5.5
2023-05-04 CVE-2023-21511 Out-of-bounds Read vulnerability in Samsung Blockchain Keystore
Out-of-bounds Read vulnerability while processing CMD_COLDWALLET_BTC_SET_PRV_UTXO in bc_core trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
local
low complexity
samsung CWE-125
5.5