Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 6.7
CVE-2024-20862

Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 6.7
CVE-2024-20863

Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 6.6
CVE-2024-20866

Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step.

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 5.5
CVE-2024-20864

Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to monitor system resources.

Mitigation only
Fix from $1,600 2024-05-07
Email MEDIUM 5.5
CVE-2024-20867

Improper privilege management vulnerability in Samsung Email prior to version 6.1.91.14 allows local attackers to access sensitive information.

Fix: 6.1.91.14+
Fix from $1,600 2024-05-07
Android MEDIUM 6.7
CVE-2024-20861

Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause memory corruption.

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 5.5
CVE-2024-20857

Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access inform…

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 5.5
CVE-2024-20858

Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to acc…

Mitigation only
Fix from $1,600 2024-05-07
Android MEDIUM 5.5
CVE-2024-20859

Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pictures without privilege.

Mitigation only
Fix from $1,600 2024-05-07
Samsung Pay MEDIUM 5.5
CVE-2024-20850

Use of Implicit Intent for Sensitive Communication in Samsung Pay prior to version 5.4.99 allows local attackers to access information of Samsung Pay.

Fix: 5.4.99+
Fix from $1,600 2024-04-02
Cloud MEDIUM 5.5
CVE-2024-20851

Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch arbitrary activity with Samsun…

Fix: 5.3.00.4+
Fix from $1,600 2024-04-02
Galaxy Themes MEDIUM 5.1
CVE-2024-20853

Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attackers to write arbitrary files t…

Fix: 5.3.05.2+
Fix from $1,600 2024-04-02
Android HIGH 7.8
CVE-2024-20846

Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

Mitigation only
Fix from $1,950 2024-04-02
Android HIGH 7.8
CVE-2024-20848

Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release 1 allows local attackers to …

Mitigation only
Fix from $1,950 2024-04-02
Android HIGH 7.8
CVE-2024-20849

Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 allows local attackers to execut…

Mitigation only
Fix from $1,950 2024-04-02
Android HIGH 7.8
CVE-2024-20844

Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute …

Mitigation only
Fix from $1,950 2024-04-02
Android HIGH 7.8
CVE-2024-20845

Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary c…

Mitigation only
Fix from $1,950 2024-04-02
Android MEDIUM 6.7
CVE-2024-20842

Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out…

Mitigation only
Fix from $1,600 2024-04-02
Android MEDIUM 6.7
CVE-2024-20843

Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to …

Mitigation only
Fix from $1,600 2024-04-02
Android MEDIUM 6.4
CVE-2024-20833

Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privileg…

Mitigation only
Fix from $1,600 2024-03-05
Account MEDIUM 5.5
CVE-2024-20841

Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.

Fix: 14.8.00.3+
Fix from $1,600 2024-03-05
Internet HIGH 7.8
CVE-2024-20838

Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.

Fix: 24.0.3.2+
Fix from $1,950 2024-03-05
Internet MEDIUM 5.3
CVE-2024-20837

Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant pe…

Fix: 24.0.0.41+
Fix from $1,600 2024-03-05
Android HIGH 7.8
CVE-2024-20835

Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local attackers to execute privileged b…

Mitigation only
Fix from $1,950 2024-03-05
Android MEDIUM 5.5
CVE-2024-20836

Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024 Release 1 allows local attackers to read out of bounds …

Mitigation only
Fix from $1,600 2024-03-05
Android MEDIUM 6.7
CVE-2024-20831

Stack overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.

Mitigation only
Fix from $1,600 2024-03-05
Android MEDIUM 6.7
CVE-2024-20832

Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.

Mitigation only
Fix from $1,600 2024-03-05
Android MEDIUM 5.3
CVE-2024-20830

Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.

Mitigation only
Fix from $1,600 2024-03-05
Android HIGH 7.1
CVE-2023-52432

Improper input validation in IpcTxSndSetLoopbackCtrl in libsec-ril prior to SMR Sep-2023 Release 1 allows local attackers to write out-of-bounds memo…

Mitigation only
Fix from $1,950 2024-03-05
Internet MEDIUM 5.3
CVE-2024-20829

Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers to open an application without…

Mitigation only
Fix from $1,600 2024-03-05