Samsung Mobile vulnerabilities

26 known vulnerabilities affecting samsung/samsung_mobile.

Total CVEs
26
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH14MEDIUM6

Vulnerabilities

Page 2 of 2
CVE-2016-9965CRITICALCVSS 9.8v5.0v5.1+2 more2016-12-16
CVE-2016-9965 [CRITICAL] CWE-388 CVE-2016-9965: Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7119.
nvd
CVE-2016-9966CRITICALCVSS 9.8v5.0v5.1+2 more2016-12-16
CVE-2016-9966 [CRITICAL] CWE-388 CVE-2016-9966: Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7120.
nvd
CVE-2016-9967CRITICALCVSS 9.8v5.0v5.1+2 more2016-12-16
CVE-2016-9967 [CRITICAL] CWE-388 CVE-2016-9967: Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7121.
nvd
CVE-2016-9567MEDIUMCVSS 5.5v6.02016-11-23
CVE-2016-9567 [MEDIUM] CWE-200 CVE-2016-9567: The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restric The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restrict setmDNIeScreenCurtain API calls, enabling attackers to control a device's screen. This can be exploited via a crafted application to eavesdrop after phone shutdown or record a conversation. The Samsung ID is SVE-2016-6343.
nvd
CVE-2016-9277HIGHCVSS 7.5v4.4v5.0+1 more2016-11-11
CVE-2016-9277 [HIGH] CWE-190 CVE-2016-9277: Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to c Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors involving APIs and an activity that computes an out-of-bounds array index, aka SVE-2016-6906.
nvd
CVE-2016-7160HIGHCVSS 7.5v6.02016-11-03
CVE-2016-7160 [HIGH] CWE-476 CVE-2016-7160: A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activiti A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activities is not properly restricted, leading to a SystemUI crash and device restart, aka SVE-2016-6248.
nvd