cbcvebase.

Samsung Android vulnerabilities

465 known vulnerabilities affecting samsung/android.

Total CVEs
465
CISA KEV
12
actively exploited
Public exploits
1
Exploited in wild
12
Severity breakdown
CRITICAL9HIGH164MEDIUM226LOW66

Vulnerabilities

Page 4 of 24
CVE-2023-30739P3HIGHCVSS 7.8v11.0v12.0+1 more2023-11-07
CVE-2023-30739 [HIGH] CVE-2023-30739: Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows l Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2024-20878P3HIGHCVSS 7.8v12.0v13.0+1 more2024-06-04
CVE-2024-20878 [HIGH] CWE-787 CVE-2024-20878: Heap out-of-bound write vulnerability in parsing grid image in libsavscmn.so prior to SMR June-2024 Heap out-of-bound write vulnerability in parsing grid image in libsavscmn.so prior to SMR June-2024 Release 1 allows local attackers to execute arbitrary code.
nvd
CVE-2024-20877P3HIGHCVSS 7.8v12.0v13.0+1 more2024-06-04
CVE-2024-20877 [HIGH] CWE-787 CVE-2024-20877: Heap out-of-bound write vulnerability in parsing grid image header in libsavscmn.so prior to SMR Jun Heap out-of-bound write vulnerability in parsing grid image header in libsavscmn.so prior to SMR Jun-2024 Release 1 allows local attackers to execute arbitrary code.
nvd
CVE-2023-30668P3HIGHCVSS 7.8v11.0v12.0+1 more2023-07-06
CVE-2023-30668 [HIGH] CWE-787 CVE-2023-30668: Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 a Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30669P3HIGHCVSS 7.8v11.0v12.0+1 more2023-07-06
CVE-2023-30669 [HIGH] CWE-787 CVE-2023-30669: Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30670P3HIGHCVSS 7.8v11.0v12.0+1 more2023-07-06
CVE-2023-30670 [HIGH] CWE-787 CVE-2023-30670: Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30693P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30693 [HIGH] CWE-787 CVE-2023-30693: Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Rele Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30689P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30689 [HIGH] CWE-787 CVE-2023-30689: Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Relea Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30694P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30694 [HIGH] CWE-787 CVE-2023-30694: Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows lo Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30687P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30687 [HIGH] CWE-787 CVE-2023-30687: Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacke Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30686P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30686 [HIGH] CWE-787 CVE-2023-30686: Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacke Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30688P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30688 [HIGH] CWE-787 CVE-2023-30688: Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
nvd
CVE-2023-30733P3HIGHCVSS 7.8v12.0v13.02023-10-04
CVE-2023-30733 [HIGH] CWE-787 CVE-2023-30733: Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows lo Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.
nvd
CVE-2023-30696P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30696 [HIGH] CWE-787 CVE-2023-30696: An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 all An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
nvd
CVE-2023-30697P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30697 [HIGH] CWE-787 CVE-2023-30697: An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Releas An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
nvd
CVE-2023-30681P3HIGHCVSS 7.8v11.0v12.0+1 more2023-08-10
CVE-2023-30681 [HIGH] CWE-787 CVE-2023-30681: An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SM An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
nvd
CVE-2024-49410P3HIGHCVSS 7.8v12.0v13.0+1 more2024-12-03
CVE-2024-49410 [HIGH] CWE-787 CVE-2024-49410: Out-of-bounds write in libswmfextractor.so prior to SMR Dec-2024 Release 1 allows local attackers to Out-of-bounds write in libswmfextractor.so prior to SMR Dec-2024 Release 1 allows local attackers to execute arbitrary code.
nvd
CVE-2024-20884P3HIGHCVSS 7.8v14.02024-06-04
CVE-2024-20884 [HIGH] CVE-2024-20884: Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prio Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.
nvd
CVE-2024-20883P3HIGHCVSS 7.8v14.02024-06-04
CVE-2024-20883 [HIGH] CVE-2024-20883: Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API.
nvd
CVE-2025-21006P3HIGHCVSS 7.8fixed in 15.02025-07-08
CVE-2025-21006 [HIGH] CWE-787 CVE-2025-21006: Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 allows local attackers to write out-of-bounds memory.
nvd
Samsung Android vulnerabilities | cvebase