Vulnerabilities > Samsung > High

DATE CVE VULNERABILITY TITLE RISK
2023-04-14 CVE-2023-29088 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123.
network
low complexity
samsung CWE-787
7.5
2023-04-14 CVE-2023-29089 Out-of-bounds Read vulnerability in Samsung products
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123.
network
low complexity
samsung CWE-125
7.5
2023-04-14 CVE-2023-29090 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123.
network
low complexity
samsung CWE-787
7.5
2023-04-14 CVE-2023-29091 Out-of-bounds Write vulnerability in Samsung products
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, Exynos 9110, and Exynos Auto T5123.
network
low complexity
samsung CWE-787
7.5
2023-03-16 CVE-2023-21457 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Bluetooth without related permission.
low complexity
samsung
8.1
2023-02-09 CVE-2023-21420 Use of Externally-Controlled Format String vulnerability in Samsung Android 10.0/11.0
Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary code execution.
local
low complexity
samsung CWE-134
7.8
2023-02-09 CVE-2023-21421 Improper Privilege Management vulnerability in Samsung Android 10.0/11.0
Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker to access device SIM PIN.
local
low complexity
samsung CWE-269
7.8
2023-02-09 CVE-2023-21430 Out-of-bounds Read vulnerability in Samsung Android 10.0/11.0
An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR JAN-2023 Release 1 allows attacker to cause memory access fault.
local
low complexity
samsung CWE-125
7.8
2023-02-09 CVE-2023-21432 Unspecified vulnerability in Samsung Smart Things
Improper access control vulnerabilities in Smart Things prior to 1.7.93 allows to attacker to invite others without authorization of the owner.
local
low complexity
samsung
7.8
2023-02-09 CVE-2023-21433 Incorrect Default Permissions vulnerability in Samsung Galaxy Store 4.5.32.4/4.5.36.4/4.5.41.8
Improper access control vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to install applications from Galaxy Store.
local
low complexity
samsung CWE-276
7.8