VYPR

mobile devices

by Samsung Mobile

CVEs (1,006)

  • CVE-2023-21475HigSep 3, 2025
    risk 0.52cvss 8.0epss 0.00

    Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2024-20816HigFeb 6, 2024
    risk 0.52cvss 8.0epss 0.00

    Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.

  • CVE-2024-20815HigFeb 6, 2024
    risk 0.52cvss 8.0epss 0.00

    Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.

  • CVE-2022-39882HigNov 9, 2022
    risk 0.52cvss 8.0epss 0.00

    Heap overflow vulnerability in sflacf_fal_bytes_peek function in libsmat.so library prior to SMR Nov-2022 Release 1 allows local attacker to execute arbitrary code.

  • CVE-2022-39852HigOct 7, 2022
    risk 0.52cvss 8.0epss 0.00

    A heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release 1 allows attacker to perform code execution.

  • CVE-2021-25372MedKEVMar 26, 2021
    risk 0.52cvss 6.1epss 0.01

    An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

  • CVE-2021-25371MedKEVMar 26, 2021
    risk 0.52cvss 6.1epss 0.01

    A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

  • CVE-2021-25370MedKEVMar 26, 2021
    risk 0.52cvss 6.1epss 0.01

    An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

  • CVE-2021-25369MedKEVMar 26, 2021
    risk 0.52cvss 6.2epss 0.01

    An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

  • CVE-2026-20983HigFeb 4, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrary activity with Samsung Dialer privilege.

  • CVE-2026-20979HigFeb 4, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper privilege management in Settings prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrary activity with Settings privilege.

  • CVE-2026-20971HigJan 9, 2026
    risk 0.51cvss 7.8epss 0.00

    Use After Free in PROCA driver prior to SMR Jan-2026 Release 1 allows local attackers to potentially execute arbitrary code.

  • CVE-2026-20970HigJan 9, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper access control in SLocation prior to SMR Jan-2026 Release 1 allows local attackers to execute the privileged APIs.

  • CVE-2023-21477HigSep 3, 2025
    risk 0.51cvss 7.9epss 0.00

    Access of Memory Location After End of Buffer vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

  • CVE-2024-34595HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-34585HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-20891HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-20888HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.

  • CVE-2024-20874HigJun 4, 2024
    risk 0.51cvss 7.9epss 0.00

    Improper access control vulnerability in SmartManagerCN prior to SMR Jun-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30733HigOct 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.

Page 8 of 51