CVE-2025-20959
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:12
- Zuletzt bearbeitet 21.05.2025 19:48:04
Use of implicit intent for sensitive communication in Wi-Fi P2P service prior to SMR May-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-20957
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:08
- Zuletzt bearbeitet 21.05.2025 19:48:24
Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch arbitrary activities with SmartManagerCN privilege.
CVE-2025-20956
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:07
- Zuletzt bearbeitet 07.05.2025 14:13:20
Improper export of android application components in Settings in Galaxy Watch prior to SMR May-2025 Release 1 allows physical attackers to access developer settings.
CVE-2025-20955
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:24:06
- Zuletzt bearbeitet 21.05.2025 19:48:29
Improper Export of Android Application Components in NotificationHistoryImageProvider prior to SMR May-2025 Release 1 allows local attackers to access notification images.
CVE-2025-20937
- EPSS 0.02%
- Veröffentlicht 07.05.2025 08:22:38
- Zuletzt bearbeitet 13.05.2025 20:21:30
Out-of-bounds write in Keymaster trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20946
- EPSS 0.03%
- Veröffentlicht 08.04.2025 04:50:11
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper handling of exceptional conditions in pairing specific bluetooth devices in Galaxy Watch Bluetooth pairing prior to SMR Apr-2025 Release 1 allows local attackers to pair with specific bluetooth devices without user interaction.
CVE-2025-20942
- EPSS 0.02%
- Veröffentlicht 08.04.2025 04:39:56
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAID.
- EPSS 0.02%
- Veröffentlicht 08.04.2025 04:39:54
- Zuletzt bearbeitet 08.04.2025 18:13:53
Improper handling of insufficient permission in Samsung Device Health Manager Service prior to SMR Apr-2025 Release 1 allows local attackers to access provider in SDMHS.
CVE-2025-20906
- EPSS 0.03%
- Veröffentlicht 04.02.2025 08:15:32
- Zuletzt bearbeitet 04.02.2025 08:15:32
Improper Export of Android Application Components in Settings prior to SMR Feb-2025 Release 1 allows local attackers to enable ADB.
CVE-2024-34664
- EPSS 0.01%
- Veröffentlicht 08.10.2024 07:15:03
- Zuletzt bearbeitet 17.07.2025 17:34:48
Improper check for exception conditions in Knox Guard prior to SMR Oct-2024 Release 1 allows physical attackers to bypass Knox Guard in a multi-user environment.