VYPR

Android

by Samsung Mobile

CVEs (475)

  • CVE-2023-30650MedJul 6, 2023
    risk 0.44cvss 6.7epss 0.00

    Out of bounds read and write in callrunTspCmd of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.

  • CVE-2023-21493MedMay 4, 2023
    risk 0.44cvss 6.8epss 0.00

    Improper access control vulnerability in SemShareFileProvider prior to SMR May-2023 Release 1 allows local attackers to access protected data.

  • CVE-2023-21451MedFeb 9, 2023
    risk 0.44cvss 6.7epss 0.00

    A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause memory corruptions.

  • CVE-2026-21010MedApr 13, 2026
    risk 0.43cvss 6.6epss 0.00

    Improper input validation in Retail Mode prior to SMR Apr-2026 Release 1 allows local attackers to trigger privileged functions.

  • CVE-2026-20981MedFeb 4, 2026
    risk 0.43cvss 6.6epss 0.00

    Improper input validation in FacAtFunction prior to SMR Feb-2026 Release 1 allows privileged physical attacker to execute arbitrary command with system privilege.

  • CVE-2025-20964MedMay 7, 2025
    risk 0.43cvss 6.6epss 0.00

    Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.

  • CVE-2025-20963MedMay 7, 2025
    risk 0.43cvss 6.6epss 0.00

    Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.

  • CVE-2024-34646MedSep 4, 2024
    risk 0.43cvss 6.6epss 0.00

    Improper access control in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to cause local permanent denial of service.

  • CVE-2024-20865MedMay 7, 2024
    risk 0.43cvss 6.6epss 0.00

    Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images.

  • CVE-2024-20819MedFeb 6, 2024
    risk 0.43cvss 6.6epss 0.00

    Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

  • CVE-2024-20818MedFeb 6, 2024
    risk 0.43cvss 6.6epss 0.00

    Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

  • CVE-2024-20817MedFeb 6, 2024
    risk 0.43cvss 6.6epss 0.00

    Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow.

  • CVE-2023-42564MedDec 5, 2023
    risk 0.43cvss 6.6epss 0.00

    Improper access control in knoxcustom service prior to SMR Dec-2023 Release 1 allows attacker to send broadcast with system privilege.

  • CVE-2023-42533MedNov 7, 2023
    risk 0.43cvss 6.6epss 0.00

    Improper Input Validation with USB Gadget Interface prior to SMR Nov-2023 Release 1 allows a physical attacker to execute arbitrary code in Kernel.

  • CVE-2026-21008MedApr 13, 2026
    risk 0.42cvss 6.5epss 0.00

    Exposure of sensitive information in S Share prior to SMR Apr-2026 Release 1 allows adjacent attacker to access sensitive information.

  • CVE-2025-20983MedJul 8, 2025
    risk 0.42cvss 6.4epss 0.00

    Out-of-bounds write in checking auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.

  • CVE-2025-20982MedJul 8, 2025
    risk 0.42cvss 6.4epss 0.00

    Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.

  • CVE-2025-20943MedApr 8, 2025
    risk 0.42cvss 6.4epss 0.00

    Out-of-bounds write in secfr trustlet prior to SMR Apr-2025 Release 1 allows local privileged attackers to cause memory corruption.

  • CVE-2025-20908MedMar 6, 2025
    risk 0.42cvss 6.5epss 0.00

    Use of insufficiently random values in Auracast prior to SMR Mar-2025 Release 1 allows adjacent attackers to access Auracast broadcasting.

  • CVE-2025-20885MedFeb 4, 2025
    risk 0.42cvss 6.4epss 0.00

    Out-of-bounds write in softsim trustlet prior to SMR Jan-2025 Release 1 allows local privileged attackers to cause memory corruption.

Page 8 of 24