VYPR

Android

by Samsung Mobile

CVEs (475)

  • CVE-2023-42561HigDec 5, 2023
    risk 0.46cvss 7.1epss 0.00

    Heap out-of-bounds write vulnerability in bootloader prior to SMR Dec-2023 Release 1 allows a physical attacker to execute arbitrary code.

  • CVE-2023-21489HigMay 4, 2023
    risk 0.46cvss 7.1epss 0.00

    Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary code.

  • CVE-2026-21021MedMay 13, 2026
    risk 0.44cvss 6.8epss 0.00

    Improper input validation in Routines prior to SMR May-2026 Release 1 allows physical attackers to launch privileged activity.

  • CVE-2026-21018MedMay 13, 2026
    risk 0.44cvss 6.7epss 0.00

    Out-of-bounds write in SveService prior to SMR May-2026 Release 1 allows local privileged attackers to execute arbitrary code.

  • CVE-2026-21011MedApr 13, 2026
    risk 0.44cvss 6.8epss 0.00

    Incorrect privilege assignment in Bluetooth in Maintenance mode prior to SMR Apr-2026 Release 1 allows physical attackers to bypass Extend Unlock.

  • CVE-2026-21009MedApr 13, 2026
    risk 0.44cvss 6.8epss 0.00

    Improper check for exceptional conditions in Recents prior to SMR Apr-2026 Release 1 allows physical attacker to bypass App Pinning.

  • CVE-2026-21007MedApr 13, 2026
    risk 0.44cvss 6.8epss 0.00

    Improper check for exceptional conditions in Device Care prior to SMR Apr-2026 Release 1 allows physical attackers to bypass Knox Guard.

  • CVE-2026-21003MedApr 13, 2026
    risk 0.44cvss 6.8epss 0.00

    Improper input validation in data related to network restrictions prior to SMR Apr-2026 Release 1 allows physical attackers to bypass the restrictions.

  • CVE-2026-20980MedFeb 4, 2026
    risk 0.44cvss 6.8epss 0.00

    Improper input validation in PACM prior to SMR Feb-2026 Release 1 allows physical attacker to execute arbitrary commands.

  • CVE-2026-20968MedJan 9, 2026
    risk 0.44cvss 6.7epss 0.00

    Use after free in DualDAR prior to SMR Jan-2026 Release 1 allows local privileged attackers to execute arbitrary code.

  • CVE-2025-21073MedNov 5, 2025
    risk 0.44cvss 6.8epss 0.00

    Insecure default configuration in USB connection mode prior to SMR Nov-2025 Release 1 allows privileged physical attackers to access user data. User interaction is required for triggering this vulnerability.

  • CVE-2025-21048MedOct 10, 2025
    risk 0.44cvss 6.7epss 0.00

    Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary code.

  • CVE-2025-21031MedSep 3, 2025
    risk 0.44cvss 6.8epss 0.00

    Improper access control in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to use the privileged APIs.

  • CVE-2023-21473MedSep 3, 2025
    risk 0.44cvss 6.8epss 0.00

    Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

  • CVE-2023-21472MedSep 3, 2025
    risk 0.44cvss 6.8epss 0.00

    Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

  • CVE-2025-20937MedMay 7, 2025
    risk 0.44cvss 6.7epss 0.00

    Out-of-bounds write in Keymaster trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.

  • CVE-2024-34638MedSep 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Improper handling of exceptional conditions in ThemeCenter prior to SMR Sep-2024 Release 1 allows local attackers to delete non-preloaded applications.

  • CVE-2024-20863MedMay 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

  • CVE-2024-20803MedJan 4, 2024
    risk 0.44cvss 6.8epss 0.00

    Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing process without user interaction.

  • CVE-2023-42563MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.

Page 6 of 24