CVE-2025-20955
- EPSS 0.01%
- Veröffentlicht 07.05.2025 08:24:06
- Zuletzt bearbeitet 21.05.2025 19:48:29
Improper Export of Android Application Components in NotificationHistoryImageProvider prior to SMR May-2025 Release 1 allows local attackers to access notification images.
CVE-2025-20937
- EPSS 0.01%
- Veröffentlicht 07.05.2025 08:22:38
- Zuletzt bearbeitet 13.05.2025 20:21:30
Out-of-bounds write in Keymaster trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20946
- EPSS 0.02%
- Veröffentlicht 08.04.2025 04:50:11
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper handling of exceptional conditions in pairing specific bluetooth devices in Galaxy Watch Bluetooth pairing prior to SMR Apr-2025 Release 1 allows local attackers to pair with specific bluetooth devices without user interaction.
CVE-2025-20942
- EPSS 0.02%
- Veröffentlicht 08.04.2025 04:39:56
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAID.
- EPSS 0.02%
- Veröffentlicht 08.04.2025 04:39:54
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper handling of insufficient permission in Samsung Device Health Manager Service prior to SMR Apr-2025 Release 1 allows local attackers to access provider in SDMHS.
CVE-2025-20906
- EPSS 0.02%
- Veröffentlicht 04.02.2025 08:15:32
- Zuletzt bearbeitet 04.02.2025 08:15:32
Improper Export of Android Application Components in Settings prior to SMR Feb-2025 Release 1 allows local attackers to enable ADB.
CVE-2024-34664
- EPSS 0.02%
- Veröffentlicht 08.10.2024 07:15:03
- Zuletzt bearbeitet 17.07.2025 17:34:48
Improper check for exception conditions in Knox Guard prior to SMR Oct-2024 Release 1 allows physical attackers to bypass Knox Guard in a multi-user environment.
CVE-2018-10751
- EPSS 14.36%
- Veröffentlicht 29.05.2018 20:29:02
- Zuletzt bearbeitet 21.11.2024 03:41:58
A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of the WbXml payload. This is due to an integer overflow in memory allocation for this string. The Samsung ID is S...
- EPSS 1.13%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:03
On Samsung mobile devices with M(6.0) and N(7.x) software, a heap overflow in the sensorhub binder service leads to code execution in a privileged process, aka SVE-2017-10991.
CVE-2018-9142
- EPSS 0.12%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:03
On Samsung mobile devices with N(7.x) software, attackers can install an arbitrary APK in the Secure Folder SD Card area because of faulty validation of a package signature and package name, aka SVE-2017-10932.