VYPR

mobile devices

by Samsung Mobile

CVEs (1,006)

  • CVE-2025-20958MedMay 7, 2025
    risk 0.29cvss 4.4epss 0.00

    Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoWiFi related behaviors.

  • CVE-2025-20942MedApr 8, 2025
    risk 0.29cvss 4.4epss 0.00

    Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAID.

  • CVE-2025-20911MedMar 6, 2025
    risk 0.29cvss 4.4epss 0.00

    Improper access control in sem_wifi service prior to SMR Mar-2025 Release 1 allows privileged local attackers to update MAC address of Galaxy Watch.

  • CVE-2024-34676MedNov 6, 2024
    risk 0.29cvss 4.4epss 0.00

    Out-of-bounds write in parsing subtitle file in libsubextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption. User interaction is required for triggering this vulnerability.

  • CVE-2024-34644MedSep 4, 2024
    risk 0.29cvss 4.4epss 0.00

    Improper access control in item selection related in Dressroom prior to SMR Sep-2024 Release 1 allows local attackers to access protected data. User interaction is required for triggering this vulnerability.

  • CVE-2024-34643MedSep 4, 2024
    risk 0.29cvss 4.4epss 0.00

    Improper access control in key input related function in Dressroom prior to SMR Sep-2024 Release 1 allows local attackers to access protected data. User interaction is required for triggering this vulnerability.

  • CVE-2024-20820MedFeb 6, 2024
    risk 0.29cvss 4.4epss 0.00

    Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Out-Of-Bounds read.

  • CVE-2023-30721MedSep 6, 2023
    risk 0.29cvss 4.4epss 0.00

    Insertion of sensitive information into log vulnerability in Locksettings prior to SMR Sep-2023 Release 1 allows a privileged local attacker to get lock screen match information from the log.

  • CVE-2023-30697MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

  • CVE-2023-30696MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

  • CVE-2023-30681MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

  • CVE-2023-30665MedJul 6, 2023
    risk 0.29cvss 4.4epss 0.00

    Improper input validation vulnerability in OnOemServiceMode in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds read.

  • CVE-2023-21497MedMay 4, 2023
    risk 0.29cvss 4.4epss 0.00

    Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the memory address.

  • CVE-2023-21488MedMay 4, 2023
    risk 0.29cvss 4.4epss 0.00

    Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in Tips.

  • CVE-2023-21460MedMar 16, 2023
    risk 0.29cvss 4.4epss 0.00

    Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.

  • CVE-2023-21435MedFeb 9, 2023
    risk 0.29cvss 4.4epss 0.00

    Exposure of Sensitive Information vulnerability in Fingerprint TA prior to SMR Feb-2023 Release 1 allows attackers to access the memory address information via log.

  • CVE-2023-21430MedFeb 9, 2023
    risk 0.29cvss 4.4epss 0.00

    An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR JAN-2023 Release 1 allows attacker to cause memory access fault.

  • CVE-2022-39897MedDec 8, 2022
    risk 0.29cvss 4.4epss 0.00

    Exposure of Sensitive Information vulnerability in kernel prior to SMR Dec-2022 Release 1 allows attackers to access the kernel address information via log.

  • CVE-2022-39853MedOct 7, 2022
    risk 0.29cvss 4.4epss 0.00

    A use after free vulnerability in perf-mgr driver prior to SMR Oct-2022 Release 1 allows attacker to cause memory access fault.

  • CVE-2022-36863MedSep 9, 2022
    risk 0.29cvss 4.4epss 0.00

    A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.

Page 36 of 51