Filtered by vendor Samsung Subscriptions
Total 1183 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-20901 1 Samsung 1 Android 2024-11-21 5.9 Medium
Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2024-20900 1 Samsung 1 Android 2024-11-21 4 Medium
Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.
CVE-2024-20899 1 Samsung 1 Android 2024-11-21 4 Medium
Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
CVE-2024-20898 1 Samsung 1 Android 2024-11-21 4 Medium
Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
CVE-2024-20897 1 Samsung 1 Android 2024-11-21 4 Medium
Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
CVE-2024-20896 1 Samsung 1 Android 2024-11-21 5.5 Medium
Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
CVE-2024-20895 1 Samsung 1 Android 2024-11-21 7.7 High
Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.
CVE-2024-20894 1 Samsung 1 Android 2024-11-21 4.3 Medium
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers to bypass authentication under certain condition. User interaction is required for triggering this vulnerability.
CVE-2024-20893 1 Samsung 1 Android 2024-11-21 6.1 Medium
Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption.
CVE-2024-20892 1 Samsung 1 Android 2024-11-21 6.5 Medium
Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors. User interaction is required for triggering this vulnerability.
CVE-2024-20891 1 Samsung 1 Android 2024-11-21 7.8 High
Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
CVE-2024-20890 1 Samsung 1 Android 2024-11-21 5.3 Medium
Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior.
CVE-2024-20889 1 Samsung 1 Android 2024-11-21 5.9 Medium
Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices.
CVE-2024-20888 1 Samsung 1 Android 2024-11-21 7.8 High
Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.
CVE-2024-20867 1 Samsung 1 Samsung Email 2024-11-21 5.5 Medium
Improper privilege management vulnerability in Samsung Email prior to version 6.1.91.14 allows local attackers to access sensitive information.
CVE-2024-20828 1 Samsung 1 Internet 2024-11-21 2.4 Low
Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication.
CVE-2024-20827 1 Samsung 1 Gallery 2024-11-21 4.6 Medium
Improper access control vulnerability in Samsung Gallery prior to version 14.5.04.4 allows physical attackers to access the picture using physical keyboard on the lockscreen.
CVE-2024-20826 1 Samsung 1 Uphelper Library 2024-11-21 5.5 Medium
Implicit intent hijacking vulnerability in UPHelper library prior to version 4.0.0 allows local attackers to access sensitive information via implicit intent.
CVE-2024-20825 1 Samsung 1 Galaxy Store 2024-11-21 5.5 Medium
Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
CVE-2024-20824 1 Samsung 1 Galaxy Store 2024-11-21 5.5 Medium
Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.