Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2025-21069 Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory. Notes 4.4.30.63+ Fix from $1,9502025-10-10 MEDIUM 5.5 CVE-2025-21070 Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-of-bounds memory. Notes 4.4.30.63+ Fix from $1,6002025-10-10 HIGH 7.8 CVE-2025-21062 Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring applicatio… Smart Switch 3.7.67.2+ Fix from $1,9502025-10-10 HIGH 7.1 CVE-2025-21066 Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory. Notes 4.4.30.63+ Fix from $1,9502025-10-10 MEDIUM 6.5 CVE-2025-21064 Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data. Smart Switch 3.7.67.2+ Fix from $1,6002025-10-10 MEDIUM 5.5 CVE-2025-21061 Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interactio… Smart Switch 3.7.67.2+ Fix from $1,6002025-10-10 HIGH 7.5 CVE-2025-21055 Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows remote attackers to access out-of-bounds memory. Android Mitigation only Fix from $1,9502025-10-10 MEDIUM 5.5 CVE-2025-21054 Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to potentially access… Android Mitigation only Fix from $1,6002025-10-10 MEDIUM 5.5 CVE-2025-21059 Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung Health. Health 6.30.5.105+ Fix from $1,6002025-10-10 MEDIUM 5.5 CVE-2025-21060 Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. … Smart Switch 3.7.67.2+ Fix from $1,6002025-10-10 HIGH 7.8 CVE-2025-21048 Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary code. Android Mitigation only Fix from $1,9502025-10-10 HIGH 7.8 CVE-2025-21051 Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to write out-of-bound… Android Mitigation only Fix from $1,9502025-10-10 HIGH 7.8 CVE-2025-21052 Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attack… Android Mitigation only Fix from $1,9502025-10-10 HIGH 7.8 CVE-2025-21053 Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corr… Android Mitigation only Fix from $1,9502025-10-10 MEDIUM 5.5 CVE-2025-21049 Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is re… Android Mitigation only Fix from $1,6002025-10-10 MEDIUM 5.5 CVE-2025-21050 Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across multiple user profiles. Android Mitigation only Fix from $1,6002025-10-10 MEDIUM 6.8 CVE-2025-21047 Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged APIs. Android Mitigation only Fix from $1,6002025-10-10 MEDIUM 5.5 CVE-2025-21045 Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. Wear Os Mitigation only Fix from $1,6002025-10-10 CRITICAL 9.8 CVE-2025-21042 KEVEPSS 33% Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code. Android Mitigation only Fix from $2,3002025-09-12 CRITICAL 9.8 CVE-2025-21043 KEV Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code. Android Mitigation only Fix from $2,3002025-09-12 MEDIUM 5.5 CVE-2024-34598 Improper export of component in GoodLock prior to version 2.2.04.95 allows local attackers to install arbitrary applications from Galaxy Store. Good Lock 2.2.04.95+ Fix from $1,6002025-09-04 MEDIUM 5.5 CVE-2025-21041 Insecure Storage of Sensitive Information in Secure Folder prior to Android 16 allows local attackers to access sensitive information. Android 16.0+ Fix from $1,6002025-09-03 HIGH 7.8 CVE-2025-21034 Out-of-bounds write in libsavsvc.so prior to SMR Sep-2025 Release 1 allows local attackers to potentially execute arbitrary code. Android Mitigation only Fix from $1,9502025-09-03 MEDIUM 5.0 CVE-2025-21036 Improper access control in Samsung Notes prior to version 4.4.30.63 allows local privileged attackers to access exported note files. User interaction… Notes 4.4.30.63+ Fix from $1,6002025-09-03 MEDIUM 6.8 CVE-2025-21032 Improper access control in One UI Home prior to SMR Sep-2025 Release 1 allows physical attackers to bypass Kiosk mode under limited conditions. Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 5.5 CVE-2025-21033 Improper access control in ContactProvider prior to SMR Sep-2025 Release 1 allows local attackers to access sensitive information. Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 6.8 CVE-2025-21031 Improper access control in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to use the privileged APIs. Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 5.5 CVE-2025-21028 Improper privilege management in ThemeManager prior to SMR Sep-2025 Release 1 allows local privileged attackers to reuse trial items. Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 5.5 CVE-2023-21483 Improper Access Control vulnerability in Galaxy Store prior to version 4.5.53.6 allows local attacker to access protected data using exported service. Galaxy Store 4.5.53.6+ Fix from $1,6002025-09-03 HIGH 7.8 CVE-2023-21480 Improper input validation vulnerability in CertByte prior to SMR Apr-2023 Release 1 allows local attackers to launch privileged activities. Android Mitigation only Fix from $1,9502025-09-03