VYPR

mobile devices

by Samsung Mobile

CVEs (1,006)

  • CVE-2025-20936HigApr 8, 2025
    risk 0.57cvss 8.8epss 0.00

    Improper access control in HDCP trustlet prior to SMR Apr-2025 Release 1 allows local attackers with shell privilege to escalate their privileges to root.

  • CVE-2023-21517HigJun 28, 2023
    risk 0.57cvss 8.8epss 0.02

    Heap out-of-bound write vulnerability in Exynos baseband prior to SMR Jun-2023 Release 1 allows remote attacker to execute arbitrary code.

  • CVE-2021-22492HigJan 5, 2021
    risk 0.57cvss 8.8epss 0.00

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Broadcom Bluetooth chipsets) software. The Bluetooth UART driver has a buffer overflow. The Samsung ID is SVE-2020-18731 (January 2021).

  • CVE-2017-18665HigApr 7, 2020
    risk 0.57cvss 8.8epss 0.00

    An issue was discovered on Samsung mobile devices with M(6.0) software. There is a NULL pointer exception in WifiService via adb-cmd, causing memory corruption. The Samsung ID is SVE-2017-8287 (June 2017).

  • CVE-2022-33719HigAug 5, 2022
    risk 0.56cvss 8.6epss 0.00

    Improper input validation in baseband prior to SMR Aug-2022 Release 1 allows attackers to cause integer overflow to heap overflow.

  • CVE-2022-23425HigFeb 11, 2022
    risk 0.56cvss 8.6epss 0.00

    Improper input validation in Exynos baseband prior to SMR Feb-2022 Release 1 allows attackers to send arbitrary NAS signaling messages with fake base station.

  • CVE-2023-21480HigSep 3, 2025
    risk 0.55cvss 8.5epss 0.00

    Improper input validation vulnerability in CertByte prior to SMR Apr-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-34620HigAug 7, 2024
    risk 0.55cvss 8.4epss 0.00

    Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.

  • CVE-2024-20845HigApr 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2024-20844HigApr 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2024-20813HigFeb 6, 2024
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2024-20812HigFeb 6, 2024
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2023-42537HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

  • CVE-2023-42536HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

  • CVE-2023-42535HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2023-30692HigOct 4, 2023
    risk 0.55cvss 8.5epss 0.00

    Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30690HigOct 4, 2023
    risk 0.55cvss 8.5epss 0.00

    Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30710HigSep 6, 2023
    risk 0.55cvss 8.5epss 0.00

    Improper input validation vulnerability in Knox AI prior to SMR Sep-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30691HigAug 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to privilege escalation.

  • CVE-2023-30680HigAug 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Improper privilege management vulnerability in MMIGroup prior to SMR Aug-2023 Release 1 allows code execution with privilege.

Page 5 of 51