CVE-2022-39905
- EPSS 0.02%
- Veröffentlicht 08.12.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:30
Implicit intent hijacking vulnerability in Telecom application prior to SMR Dec-2022 Release 1 allows attacker to access sensitive information via implicit intent.
CVE-2022-39906
- EPSS 0.02%
- Veröffentlicht 08.12.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:30
Improper access control vulnerability in SecTelephonyProvider prior to SMR Dec-2022 Release 1 allows attackers to access message information.
CVE-2022-39907
- EPSS 0.04%
- Veröffentlicht 08.12.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:30
Integer overflow vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attacker to perform Out-Of-Bounds Write.
CVE-2022-39908
- EPSS 0.03%
- Veröffentlicht 08.12.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:30
TOCTOU vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attacker to perform Out-Of-Bounds Write.
CVE-2022-39912
- EPSS 0.01%
- Veröffentlicht 08.12.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:30
Improper handling of insufficient permissions vulnerability in setSecureFolderPolicy in PersonaManagerService prior to Android T(13) allows local attackers to set some setting value in Secure folder.
CVE-2022-39894
- EPSS 0.02%
- Veröffentlicht 08.12.2022 16:15:11
- Zuletzt bearbeitet 21.11.2024 07:18:28
Improper access control vulnerability in ContactListStartActivityHelper in Phone prior to SMR Dec-2022 Release 1 allows to access sensitive information via implicit intent.
CVE-2022-39895
- EPSS 0.02%
- Veröffentlicht 08.12.2022 16:15:11
- Zuletzt bearbeitet 21.11.2024 07:18:28
Improper access control vulnerability in ContactListUtils in Phone prior to SMR Dec-2022 Release 1 allows to access contact group information via implicit intent.
CVE-2022-39896
- EPSS 0.02%
- Veröffentlicht 08.12.2022 16:15:11
- Zuletzt bearbeitet 21.11.2024 07:18:28
Improper access control vulnerabilities in Contacts prior to SMR Dec-2022 Release 1 allows to access sensitive information via implicit intent.
CVE-2022-42782
- EPSS 0.01%
- Veröffentlicht 06.12.2022 07:15:26
- Zuletzt bearbeitet 23.04.2025 19:16:23
In wlan driver, there is a possible missing permission check, This could lead to local information disclosure.
CVE-2022-42778
- EPSS 0.02%
- Veröffentlicht 06.12.2022 07:15:25
- Zuletzt bearbeitet 23.04.2025 19:16:22
In windows manager service, there is a missing permission check. This could lead to set up windows manager service with no additional execution privileges needed.