Vulnerabilities > Samsung > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-34614 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34615 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34619 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung
8.8
2024-08-07 CVE-2024-34620 Unspecified vulnerability in Samsung Android 13.0/14.0
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.
local
low complexity
samsung
7.8
2024-08-07 CVE-2024-34622 Out-of-bounds Write vulnerability in Samsung Notes 2.0.02.31/4.2.00.22/4.3.02.61
Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
local
low complexity
samsung CWE-787
7.8
2024-08-07 CVE-2024-34623 Out-of-bounds Write vulnerability in Samsung Notes 2.0.02.31/4.2.00.22/4.3.02.61
Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.
local
low complexity
samsung CWE-787
7.8
2024-07-09 CVE-2024-27360 Improper Validation of Specified Quantity in Input vulnerability in Samsung products
A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, and Exynos W930 where they do not properly check length of the data, which can lead to a Denial of Service.
network
low complexity
samsung CWE-1284
7.5
2024-07-09 CVE-2024-27362 Improper Validation of Specified Quantity in Input vulnerability in Samsung products
A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exynos 2400 where they do not properly check the length of the data, which can lead to a Information disclosure.
network
low complexity
samsung CWE-1284
7.5
2024-07-09 CVE-2024-31957 Improper Validation of Specified Quantity in Input vulnerability in Samsung Exynos 2200 Firmware and Exynos 2400 Firmware
A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the validation of native handles, which can result in a DoS(Denial of Service) attack by unmapping an invalid length.
network
low complexity
samsung CWE-1284
7.5
2024-07-02 CVE-2024-20888 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8