CVE-2021-25386
- EPSS 0.19%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- EPSS 0.19%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
CVE-2021-25388
- EPSS 0.01%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app.
CVE-2021-25389
- EPSS 0.02%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
Improper running task check in S Secure prior to SMR MAY-2021 Release 1 allows attackers to use locked app without authentication.
- EPSS 0.02%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
Intent redirection vulnerability in PhotoTable prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action.
- EPSS 0.02%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:53
Intent redirection vulnerability in Secure Folder prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action.
CVE-2021-25392
- EPSS 0.01%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:54
Improper protection of backup path configuration in Samsung Dex prior to SMR MAY-2021 Release 1 allows local attackers to get sensitive information via changing the path.
CVE-2021-25393
- EPSS 0.03%
- Veröffentlicht 11.06.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:54:54
Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data.
CVE-2021-25382
- EPSS 0.02%
- Veröffentlicht 23.04.2021 15:15:09
- Zuletzt bearbeitet 21.11.2024 05:54:52
An improper authorization of using debugging command in Secure Folder prior to SMR Oct-2020 Release 1 allows unauthorized access to contents in Secure Folder via debugging command.
CVE-2021-0488
- EPSS 0.01%
- Veröffentlicht 15.04.2021 13:15:11
- Zuletzt bearbeitet 21.11.2024 05:42:48
In pb_write of pb_encode.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: Andr...