CVE-2025-21046
- EPSS 0.15%
- Veröffentlicht 10.10.2025 06:33:05
- Zuletzt bearbeitet 23.10.2025 12:43:45
Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to temporarily access to recent app list.
CVE-2025-21044
- EPSS 0.12%
- Veröffentlicht 10.10.2025 06:33:02
- Zuletzt bearbeitet 23.10.2025 12:43:38
Out-of-bounds write in fingerprint trustlet prior to SMR Oct-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-21043
- EPSS 1.89%
- Veröffentlicht 12.09.2025 07:21:51
- Zuletzt bearbeitet 07.10.2026 21:17:06
Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
CVE-2025-21042
- EPSS 33.17%
- Veröffentlicht 12.09.2025 07:21:49
- Zuletzt bearbeitet 08.10.2026 10:35:13
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.
CVE-2025-21041
- EPSS 0.13%
- Veröffentlicht 03.09.2025 06:05:47
- Zuletzt bearbeitet 19.09.2025 20:13:14
Insecure Storage of Sensitive Information in Secure Folder prior to Android 16 allows local attackers to access sensitive information.
CVE-2025-21034
- EPSS 0.14%
- Veröffentlicht 03.09.2025 06:05:39
- Zuletzt bearbeitet 11.09.2025 21:23:51
Out-of-bounds write in libsavsvc.so prior to SMR Sep-2025 Release 1 allows local attackers to potentially execute arbitrary code.
CVE-2025-21033
- EPSS 0.12%
- Veröffentlicht 03.09.2025 06:05:38
- Zuletzt bearbeitet 11.09.2025 21:23:42
Improper access control in ContactProvider prior to SMR Sep-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-21032
- EPSS 0.17%
- Veröffentlicht 03.09.2025 06:05:37
- Zuletzt bearbeitet 11.09.2025 21:23:27
Improper access control in One UI Home prior to SMR Sep-2025 Release 1 allows physical attackers to bypass Kiosk mode under limited conditions.
CVE-2025-21031
- EPSS 0.14%
- Veröffentlicht 03.09.2025 06:05:36
- Zuletzt bearbeitet 05.09.2025 16:40:29
Improper access control in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to use the privileged APIs.
CVE-2025-21029
- EPSS 0.11%
- Veröffentlicht 03.09.2025 06:05:34
- Zuletzt bearbeitet 11.09.2025 21:22:53
Improper handling of insufficient permission in System UI prior to SMR Sep-2025 Release 1 allows local attackers to send arbitrary replies to messages from the cover display.