VYPR

Android

by Samsung Mobile

CVEs (487)

  • CVE-2023-21457MedMar 16, 2023
    risk 0.27cvss 4.1epss 0.00

    Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Bluetooth without related permission.

  • CVE-2025-21054MedOct 10, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to potentially access out-of-bounds memory.

  • CVE-2025-21053MedOct 10, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.

  • CVE-2025-21052MedOct 10, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.

  • CVE-2025-21051MedOct 10, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to write out-of-bounds memory.

  • CVE-2025-21034MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write in libsavsvc.so prior to SMR Sep-2025 Release 1 allows local attackers to potentially execute arbitrary code.

  • CVE-2025-21033MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper access control in ContactProvider prior to SMR Sep-2025 Release 1 allows local attackers to access sensitive information.

  • CVE-2025-21029MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper handling of insufficient permission in System UI prior to SMR Sep-2025 Release 1 allows local attackers to send arbitrary replies to messages from the cover display.

  • CVE-2025-21026MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper handling of insufficient permission in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to interrupt the call.

  • CVE-2023-21471MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper access control vulnerability in SemClipboard prior to SMR Apr-2023 Release 1 allows attackers to read arbitrary files with system permission.

  • CVE-2023-21470MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.NETWORK_LOCATION action.

  • CVE-2023-21469MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.GEOFENCE action.

  • CVE-2025-21015MedAug 6, 2025
    risk 0.26cvss 4.0epss 0.00

    Path Traversal in Document scanner prior to SMR Aug-2025 Release 1 allows local attackers to delete file with Document scanner's privilege.

  • CVE-2025-20990MedAug 6, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper access control in accessing system device node prior to SMR Aug-2025 Release 1 allows local attackers to access device identifier.

  • CVE-2025-21003MedJul 8, 2025
    risk 0.26cvss 4.0epss 0.00

    Insecure storage of sensitive information in Emergency SOS prior to SMR Jul-2025 Release 1 allows local attackers to access sensitive information.

  • CVE-2025-20993MedJun 4, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write in libsecimaging.camera.samsung.so prior to SMR Jun-2025 Release 1 allows local attackers to write out-of-bounds memory.

  • CVE-2025-20992MedJun 4, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bound read in libsecimaging.camera.samsung.so prior to SMR Feb-2025 Release 1 allows local attackers to read out-of-bounds memory.

  • CVE-2025-20991MedJun 4, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper export of Android application components in Bluetooth prior to SMR Jun-2025 Release 1 allows local attackers to make devices discoverable.

  • CVE-2025-20980MedMay 7, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds write in libsavscmn prior to Android 15 allows local attackers to cause memory corruption.

  • CVE-2025-20962MedMay 7, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attackers to track the S Pen position.

Page 21 of 25