Vulnerability index

Browse CVEs

727 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Tizenrt HIGH 7.5
CVE-2022-40281

An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). cyassl_connect_step2 in curl/vtls/cyassl.c has a missing X509_free after SS…

Mitigation only
Fix from $1,950 2022-09-08
Mtower HIGH 7.8
CVE-2022-35858

The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to trigger a memory overwrite, den…

No fix yet
Fix from $1,950 2022-08-04
Syncthru Web Service HIGH 7.5
CVE-2021-42913

The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext passwords by reading th…

Mitigation only
Fix from $1,950 2021-12-20
Ddr4 Sdram Firmware HIGH 8.3
CVE-2021-42114

Modern DRAM devices (PC-DDR4, LPDDR4X) are affected by a vulnerability in their internal Target Row Refresh (TRR) mitigation against Rowhammer attack…

No fix yet
Fix from $1,950 2021-11-16
Android HIGH 7.8
CVE-2021-25487 KEV

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in a…

Mitigation only
Fix from $1,950 2021-10-06
Android MEDIUM 5.5
CVE-2021-25489 KEV

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug …

Mitigation only
Fix from $1,600 2021-10-06
Drive Manager HIGH 7.8
CVE-2021-39373

Samsung Drive Manager 2.0.104 on Samsung H3 devices allows attackers to bypass intended access controls on disk management. WideCharToMultiByte, Wide…

No fix yet
Fix from $1,950 2021-09-01
Ar Emoji Editor HIGH 7.8
CVE-2021-25441

Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to ac…

Mitigation only
Fix from $1,950 2021-07-08
Android MEDIUM 6.4
CVE-2021-25395 KEV

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is co…

Mitigation only
Fix from $1,600 2021-06-11
Android MEDIUM 6.4
CVE-2021-25394 KEV

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privileg…

Mitigation only
Fix from $1,600 2021-06-11
Account HIGH 7.8
CVE-2021-25381

Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows loca…

Mitigation only
Fix from $1,950 2021-04-09
Android MEDIUM 6.7
CVE-2021-25371 KEV

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

Mitigation only
Fix from $1,600 2021-03-26
Android MEDIUM 6.7
CVE-2021-25372 KEV

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

Mitigation only
Fix from $1,600 2021-03-26
Android MEDIUM 5.5
CVE-2021-25369 KEV

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

Mitigation only
Fix from $1,600 2021-03-26
Android HIGH 7.1
CVE-2021-25337 KEV

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write…

Mitigation only
Fix from $1,950 2021-03-04
Exynos CRITICAL 9.1
CVE-2020-25054

An issue was discovered on Samsung mobile devices with software through 2020-04-02 (Exynos modem chipsets). There is a heap-based buffer over-read in…

Mitigation only
Fix from $2,300 2020-08-31
Exynos Smp1300 CRITICAL 9.8
CVE-2019-20566

An issue was discovered on Samsung mobile devices with any (before September 2019 for SMP1300 Exynos modem chipsets) software. Attackers can trigger …

Mitigation only
Fix from $2,300 2020-03-24
Note9 HIGH 7.5
CVE-2019-20564

An issue was discovered on Samsung mobile devices with any (before October 2019 for S9 or Note9) software. Attackers can manipulate the IMEI. The Sam…

Mitigation only
Fix from $1,950 2020-03-24
Exynos CRITICAL 9.8
CVE-2020-10835

An issue was discovered on Samsung mobile devices with any (before February 2020 for Exynos modem chipsets) software. There is a buffer overflow in b…

Mitigation only
Fix from $2,300 2020-03-24
Galaxy S6 Edge Firmware MEDIUM 5.5
CVE-2015-7890

Multiple buffer overflows in the esa_write function in /dev/seirenin the Exynos Seiren Audio driver, as used in Samsung S6 Edge, allow local users to…

No fix yet
Fix from $1,600 2020-02-12
Prismview Player 11 CRITICAL 9.8
CVE-2019-20451EPSS 8%

The HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading RebootSystem.lnk and requ…

No fix yet
Fix from $2,300 2020-02-10
Galaxy Gear Firmware CRITICAL 9.8
CVE-2018-16272

The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-Fi interface, due to the lack …

No fix yet
Fix from $2,300 2020-01-22
Galaxy Gear Firmware HIGH 7.5
CVE-2018-16270

Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged pro…

No fix yet
Fix from $1,950 2020-01-22
Galaxy Gear Firmware MEDIUM 6.5
CVE-2018-16271

The wemail_consumer_service (from the built-in application wemail) in Samsung Galaxy Gear series allows an unprivileged process to manipulate a user'…

No fix yet
Fix from $1,600 2020-01-22
Galaxy Gear Firmware HIGH 7.5
CVE-2018-16269

The wnoti system service in Samsung Galaxy Gear series allows an unprivileged process to take over the internal notification message data, due to imp…

No fix yet
Fix from $1,950 2020-01-22
M2m1shot Driver HIGH 7.8
CVE-2015-7892

Stack-based buffer overflow in the m2m1shot_compat_ioctl32 function in the Samsung m2m1shot driver framework, as used in Samsung S6 Edge, allows loca…

No fix yet
Fix from $1,950 2019-12-09
Galaxy J7 Pro Firmware HIGH 7.8
CVE-2019-15464

The Samsung J7 Pro Android device with a build fingerprint of samsung/j7y17lteub/j7y17lte:8.1.0/M1AJQ/J730GUBS6BSC1:user/release-keys contains a pre-…

Mitigation only
Fix from $1,950 2019-11-14
Galaxy J7 Pro Firmware HIGH 7.8
CVE-2019-15465

The Samsung J7 Pro Android device with a build fingerprint of samsung/j7y17lteubm/j7y17lte:8.1.0/M1AJQ/J730GMUBS6BSC1:user/release-keys contains a pr…

Mitigation only
Fix from $1,950 2019-11-14
Galaxy S7 Edge Firmware HIGH 7.8
CVE-2019-15447

The Samsung S7 Edge Android device with a build fingerprint of samsung/hero2ltexx/hero2lte:8.0.0/R16NW/G935FXXS4ESC3:user/release-keys contains a pre…

Mitigation only
Fix from $1,950 2019-11-14
Galaxy S7 Edge Firmware HIGH 7.8
CVE-2019-15448

The Samsung S7 Edge Android device with a build fingerprint of samsung/hero2ltexx/hero2lte:8.0.0/R16NW/G935FXXS4ESC3:user/release-keys contains a pre…

Mitigation only
Fix from $1,950 2019-11-14