VYPR

Vendor CVEs

Samsung Mobile

All CVEs

2,312 total · sorted by risk
  • CVE-2023-30706HigSep 6, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper authorization in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows attacker to read arbitrary file with system privilege.

  • CVE-2023-36481HigAug 28, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, and W920. Improper handling of PPP length parameter inconsistency can cause an infinite loop.

  • CVE-2021-35309HigAug 22, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MITM attacks.

  • CVE-2023-30699HigAug 10, 2023
    risk 0.49cvss 7.5epss 0.01

    Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attackers.

  • CVE-2023-31115HigJun 7, 2023
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause changes to the activation mode of RCS via a crafted application.

  • CVE-2023-21516HigMay 26, 2023
    risk 0.49cvss 7.5epss 0.01

    XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

  • CVE-2023-21515HigMay 26, 2023
    risk 0.49cvss 7.5epss 0.01

    InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

  • CVE-2023-21514HigMay 26, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

  • CVE-2023-26076HigMar 13, 2023
    risk 0.49cvss 7.6epss 0.01

    An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G SM message codec can occur due to insufficient parameter validation when…

  • CVE-2023-26073HigMar 13, 2023
    risk 0.49cvss 7.6epss 0.01

    An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to…

  • CVE-2023-26074HigMar 13, 2023
    risk 0.49cvss 7.6epss 0.01

    An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.. A heap-based buffer overflow in the 5G MM message codec can occur due to…

  • CVE-2023-26072HigMar 13, 2023
    risk 0.49cvss 7.6epss 0.01

    An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to…

  • CVE-2023-26075HigMar 10, 2023
    risk 0.49cvss 7.6epss 0.01

    An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G MM message codec can occur due to…

  • CVE-2023-21444HigFeb 9, 2023
    risk 0.49cvss 7.5epss 0.00

    Improper cryptographic implementation in Samsung Flow for PC 4.9.14.0 allows adjacent attackers to decrypt encrypted messages or inject commands.

  • CVE-2023-21443HigFeb 9, 2023
    risk 0.49cvss 7.5epss 0.00

    Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to decrypt encrypted messages or inject commands.

  • CVE-2022-40278HigSep 29, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). createDB in security/provisioning/src/provisioningdatabasemanager.c has a missing sqlite3_free after sqlite3_exec, leading to a denial of service.

  • CVE-2022-40762HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    A Memory Allocation with Excessive Size Value vulnerablity in the TEE_Realloc function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_Realloc with an excessive number for the parameter len.

  • CVE-2022-40761HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.02

    The function tee_obj_free in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_AllocateOperation with a disturbed heap layout, related to utee_cryp_obj_alloc.

  • CVE-2022-40760HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    A Buffer Access with Incorrect Length Value vulnerablity in the TEE_MACUpdate function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACUpdate with an excessive size value of chunkSize.

  • CVE-2022-40759HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    A NULL pointer dereference issue in the TEE_MACCompareFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACCompareFinal with a NULL pointer for the parameter operation.

  • CVE-2022-40758HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    A Buffer Access with Incorrect Length Value vulnerablity in the TEE_CipherUpdate function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_CipherUpdate with an excessive size value of srcLen.

  • CVE-2022-40757HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    A Buffer Access with Incorrect Length Value vulnerablity in the TEE_MACComputeFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACComputeFinal with an excessive size value of messageLen.

  • CVE-2022-40281HigSep 8, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). cyassl_connect_step2 in curl/vtls/cyassl.c has a missing X509_free after SSL_get_peer_certificate, leading to information disclosure.

  • CVE-2022-40280HigSep 8, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). createDB in security/provisioning/src/provisioningdatabasemanager.c has a missing sqlite3_close after sqlite3_open_v2, leading to a denial of service.

  • CVE-2022-39830HigSep 5, 2022
    risk 0.49cvss 7.5epss 0.01

    sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_public_key_affine_coordinates, leading to a denial of service.

  • CVE-2022-39829HigSep 5, 2022
    risk 0.49cvss 7.5epss 0.01

    There is a NULL pointer dereference in aes256_encrypt in Samsung mTower through 0.3.0 due to a missing check on the return value of EVP_CIPHER_CTX_new.

  • CVE-2022-39828HigSep 5, 2022
    risk 0.49cvss 7.5epss 0.01

    sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_private_key, leading to a denial of service.

  • CVE-2022-36622HigSep 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_GetObjectInfo1.

  • CVE-2022-36621HigSep 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.

  • CVE-2022-38155HigAug 11, 2022
    risk 0.49cvss 7.5epss 0.01

    TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive Memory Allocation via a large len value, as demonstrated by a Numaker-PFM-M2351 TEE kernel crash.

  • CVE-2022-33713HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    Implicit Intent hijacking vulnerability in Samsung Cloud prior to version 5.2.0 allows attacker to get sensitive information.

  • CVE-2022-30746HigJun 7, 2022
    risk 0.49cvss 7.5epss 0.01

    Missing caller check in Smart Things prior to version 1.7.85.12 allows attacker to access senstive information remotely using javascript interface API.

  • CVE-2022-27835HigApr 11, 2022
    risk 0.49cvss 7.6epss 0.00

    Improper boundary check in UWB firmware prior to SMR Apr-2022 Release 1 allows arbitrary memory write.

  • CVE-2022-22288HigJan 10, 2022
    risk 0.49cvss 7.5epss 0.01

    Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.

  • CVE-2021-42913HigDec 20, 2021
    risk 0.49cvss 7.5epss 0.02

    The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext passwords by reading the HTML source code. Authentication is not required.

  • CVE-2021-25485HigOct 6, 2021
    risk 0.49cvss 7.5epss 0.00

    Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file as system UID via BT remote socket.

  • CVE-2021-22684HigAug 31, 2021
    risk 0.49cvss 7.5epss 0.01

    Tizen RT RTOS version 3.0.GBB is vulnerable to integer wrap-around in functions_calloc and mm_zalloc. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash

  • CVE-2021-25442HigJul 8, 2021
    risk 0.49cvss 7.5epss 0.01

    Improper MDM policy management vulnerability in KME module prior to KCS version 1.39 allows MDM users to bypass Knox Manage authentication.

  • CVE-2021-25426HigJul 8, 2021
    risk 0.49cvss 7.5epss 0.01

    Improper component protection vulnerability in SmsViewerActivity of Samsung Message prior to SMR July-2021 Release 1 allows untrusted applications to access Message files.

  • CVE-2021-25417HigJun 11, 2021
    risk 0.49cvss 7.5epss 0.00

    Improper authorization in SDP SDK prior to SMR JUN-2021 Release 1 allows access to internal storage.

  • CVE-2021-25330HigMar 2, 2021
    risk 0.49cvss 7.5epss 0.00

    Calling of non-existent provider in MobileWips application prior to SMR Feb-2021 Release 1 allows unauthorized actions including denial of service attack by hijacking the provider.

  • CVE-2020-35553HigDec 18, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Qualcomm SM8250 chipsets) software. They allows attackers to cause a denial of service (unlock failure) by triggering a power-shortage incident that causes a false-positive attack detection. The Samsung…

  • CVE-2020-26606HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. An attacker can access certain Secure Folder content via a debugging command. The Samsung ID is SVE-2020-18673 (October 2020).

  • CVE-2020-26605HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Exynos chipsets) software. They allow attackers to obtain sensitive information by reading a log. The Samsung ID is SVE-2020-18596 (October 2020).

  • CVE-2020-26604HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in SystemUI on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows an unprivileged process to access contact numbers. The Samsung ID is SVE-2020-18467 (October 2020).

  • CVE-2020-26602HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in EthernetNetwork on Samsung mobile devices with O(8.1), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows sdcard access by an unprivileged process. The Samsung ID is SVE-2020-18392 (October 2020).

  • CVE-2020-26601HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in DirEncryptService on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. PendingIntent with an empty intent is mishandled, allowing an attacker to perform a privileged action via a modified intent. The Samsung ID is SVE-2020-18034…

  • CVE-2020-26600HigOct 6, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with Q(10.0) software. Auto Hotspot allows attackers to obtain sensitive information. The Samsung ID is SVE-2020-17288 (October 2020).

  • CVE-2020-25056HigAug 31, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with Q(10.0) (Galaxy S20) software. Because HAL improperly checks versions, bootloading by the S.LSI NFC chipset is mishandled. The Samsung ID is SVE-2020-16169 (August 2020).

  • CVE-2020-25051HigAug 31, 2020
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via AppInfo. The Samsung ID is SVE-2020-17758 (August 2020).

Page 12 of 47