Vulnerabilities > Samsung > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-03-13 CVE-2023-26073 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.
network
low complexity
samsung CWE-787
critical
9.8
2023-03-13 CVE-2023-26074 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123..
network
low complexity
samsung CWE-787
critical
9.8
2023-03-13 CVE-2023-24033 Unspecified vulnerability in Samsung products
The Samsung Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T512 baseband modem chipsets do not properly check format types specified by the Session Description Protocol (SDP) module, which can lead to a denial of service.
network
low complexity
samsung
critical
9.8
2023-03-13 CVE-2023-26072 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.
network
low complexity
samsung CWE-787
critical
9.8
2023-03-10 CVE-2023-26075 Classic Buffer Overflow vulnerability in Samsung products
An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.
network
low complexity
samsung CWE-120
critical
9.8
2022-11-09 CVE-2022-39881 Out-of-bounds Read vulnerability in Samsung Exynos Firmware
Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR Sep-2022 Release allows remote attacker to read out of bounds memory.
network
low complexity
samsung CWE-125
critical
9.1
2022-11-09 CVE-2022-39892 Improper Authentication vulnerability in Samsung Pass
Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature.
network
low complexity
samsung CWE-287
critical
9.8
2022-10-07 CVE-2022-39862 Unspecified vulnerability in Samsung Dynamic Lockscreen
Improper authorization in Dynamic Lockscreen prior to SMR Sep-2022 Release 1 in Android R(11) and 3.3.03.66 in Android S(12) allows unauthorized use of javascript interface api.
network
low complexity
samsung
critical
9.8
2022-02-11 CVE-2022-24927 Improper Privilege Management vulnerability in Samsung Video Player
Improper privilege management vulnerability in Samsung Video Player prior to version 7.3.15.30 allows attackers to execute video files without permission.
network
low complexity
samsung CWE-269
critical
9.8
2021-11-05 CVE-2021-25508 Improper Privilege Management vulnerability in Samsung Smartthings
Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.
network
low complexity
samsung CWE-269
critical
9.8