Vulnerabilities > Samsung > High

DATE CVE VULNERABILITY TITLE RISK
2024-09-04 CVE-2024-34638 Improper Handling of Exceptional Conditions vulnerability in Samsung Android 12.0/13.0/14.0
Improper handling of exceptional conditions in ThemeCenter prior to SMR Sep-2024 Release 1 allows local attackers to delete non-preloaded applications.
local
low complexity
samsung CWE-755
7.1
2024-09-04 CVE-2024-34656 Path Traversal vulnerability in Samsung Notes
Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-22
7.8
2024-09-04 CVE-2024-34658 Out-of-bounds Read vulnerability in Samsung Notes
Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.
local
low complexity
samsung CWE-125
7.1
2024-09-04 CVE-2024-34660 Out-of-bounds Write vulnerability in Samsung Notes
Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-12 CVE-2024-7399 Path Traversal vulnerability in Samsung Magicinfo 9 Server
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1050 allows attackers to write arbitrary file as system authority.
network
low complexity
samsung CWE-22
7.5
2024-08-07 CVE-2024-34612 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34614 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34615 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34619 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
8.8
2024-08-07 CVE-2024-34620 Unspecified vulnerability in Samsung Android 13.0/14.0
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.
local
low complexity
samsung
7.8