VYPR

Android

by Samsung Mobile

CVEs (475)

  • CVE-2024-34588MedJul 2, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

  • CVE-2024-20890MedJul 2, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior.

  • CVE-2024-20830MedMar 5, 2024
    risk 0.34cvss 5.3epss 0.00

    Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.

  • CVE-2023-30700MedAug 10, 2023
    risk 0.34cvss 5.3epss 0.00

    PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.

  • CVE-2023-30666MedJul 6, 2023
    risk 0.34cvss 5.3epss 0.00

    Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.

  • CVE-2023-30663MedJul 6, 2023
    risk 0.34cvss 5.3epss 0.00

    Improper input validation vulnerability in OemPersonalizationSetLock in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.

  • CVE-2023-21486MedMay 4, 2023
    risk 0.34cvss 5.3epss 0.00

    Improper export of android application components vulnerability in ImagePreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.

  • CVE-2023-21485MedMay 4, 2023
    risk 0.34cvss 5.3epss 0.00

    Improper export of android application components vulnerability in VideoPreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.

  • CVE-2026-20988MedMar 16, 2026
    risk 0.33cvss 5.0epss 0.00

    Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local attacker to launch arbitrary activity with Settings privilege. User interaction is required for triggering this vulnerability.

  • CVE-2025-21027MedSep 3, 2025
    risk 0.33cvss 5.1epss 0.00

    Improper verification of intent by broadcast receiver in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to temporarily disable the SIM.

  • CVE-2025-21025MedSep 3, 2025
    risk 0.33cvss 5.1epss 0.00

    Improper access control in MARsExemptionManager prior to SMR Sep-2025 Release 1 allows local attackers to be excluded from background execution management.

  • CVE-2025-20959MedMay 7, 2025
    risk 0.33cvss 5.1epss 0.00

    Use of implicit intent for sensitive communication in Wi-Fi P2P service prior to SMR May-2025 Release 1 allows local attackers to access sensitive information.

  • CVE-2025-20953MedMay 7, 2025
    risk 0.33cvss 5.1epss 0.00

    Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch activities within SmartManagerCN.

  • CVE-2025-20893MedFeb 4, 2025
    risk 0.33cvss 5.1epss 0.00

    Improper access control in NotificationManager prior to SMR Jan-2025 Release 1 allows local attackers to change the configuration of notifications.

  • CVE-2024-49401MedNov 6, 2024
    risk 0.33cvss 5.1epss 0.00

    Improper input validation in Settings Suggestions prior to SMR Nov-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-34648MedSep 4, 2024
    risk 0.33cvss 5.1epss 0.00

    Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1 allows local attackers to access sensitive data.

  • CVE-2024-34641MedSep 4, 2024
    risk 0.33cvss 5.1epss 0.00

    Improper Export of Android Application Components in FeliCaTest prior to SMR Sep-2024 Release 1 allows local attackers to enable NFC configuration.

  • CVE-2024-34616MedAug 7, 2024
    risk 0.33cvss 5.1epss 0.00

    Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.

  • CVE-2024-34615MedAug 7, 2024
    risk 0.33cvss 5.1epss 0.00

    Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.

  • CVE-2024-34611MedAug 7, 2024
    risk 0.33cvss 5.1epss 0.00

    Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive information.

Page 16 of 24