CVE-2025-20982
- EPSS 0.01%
- Veröffentlicht 08.07.2025 10:33:29
- Zuletzt bearbeitet 14.07.2025 18:11:37
Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20964
- EPSS 0.01%
- Veröffentlicht 07.05.2025 08:24:18
- Zuletzt bearbeitet 21.05.2025 19:47:37
Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2025-20963
- EPSS 0.01%
- Veröffentlicht 07.05.2025 08:24:17
- Zuletzt bearbeitet 21.05.2025 19:47:42
Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:16
- Zuletzt bearbeitet 21.05.2025 19:47:47
Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attackers to track the S Pen position.
CVE-2025-20961
- EPSS 0.01%
- Veröffentlicht 07.05.2025 08:24:14
- Zuletzt bearbeitet 21.05.2025 19:47:53
Improper handling of insufficient permission or privileges in sepunion service prior to SMR May-2025 Release 1 allows local privileged attackers to access files with system privilege.
CVE-2025-20960
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:13
- Zuletzt bearbeitet 21.05.2025 19:48:00
Improper handling of insufficient permission in CocktailBarService prior to SMR May-2025 Release 1 allows local attackers to use the privileged api.
CVE-2025-20959
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:12
- Zuletzt bearbeitet 21.05.2025 19:48:04
Use of implicit intent for sensitive communication in Wi-Fi P2P service prior to SMR May-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-20958
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:10
- Zuletzt bearbeitet 21.05.2025 19:48:13
Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoWiFi related behaviors.
CVE-2025-20957
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:08
- Zuletzt bearbeitet 21.05.2025 19:48:24
Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch arbitrary activities with SmartManagerCN privilege.
CVE-2025-20955
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:06
- Zuletzt bearbeitet 21.05.2025 19:48:29
Improper Export of Android Application Components in NotificationHistoryImageProvider prior to SMR May-2025 Release 1 allows local attackers to access notification images.