Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Android
(Samsung)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 324 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-06-04 | CVE-2024-20882 | Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary data access. | Android | 4.6 | ||
2024-06-04 | CVE-2024-20881 | Improper input validation vulnerability in chnactiv TA prior to SMR Jun-2024 Release 1 allows local privileged attackers lead to potential arbitrary code execution. | Android | 6.7 | ||
2024-06-04 | CVE-2024-20883 | Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API. | Android | 7.8 | ||
2024-06-04 | CVE-2024-20885 | Improper component protection vulnerability in Samsung Dialer prior to SMR May-2024 Release 1 allows local attackers to make a call without proper permission. | Android | 3.3 | ||
2024-06-04 | CVE-2024-20884 | Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prior to SMR Jun-2024 Release 1 allows local attackers to use privileged API. | Android | 7.8 | ||
2024-12-03 | CVE-2024-49411 | Path Traversal in ThemeCenter prior to SMR Dec-2024 Release 1 allows physical attackers to copy apk files to arbitrary path with ThemeCenter privilege. | Android | 4.6 | ||
2024-12-03 | CVE-2024-49410 | Out-of-bounds write in libswmfextractor.so prior to SMR Dec-2024 Release 1 allows local attackers to execute arbitrary code. | Android | 7.8 | ||
2024-12-03 | CVE-2024-49413 | Improper Verification of Cryptographic Signature in SmartSwitch prior to SMR Dec-2024 Release 1 allows local attackers to install malicious applications. | Android | 7.8 | ||
2024-12-03 | CVE-2024-49414 | Authentication Bypass Using an Alternate Path in Dex Mode prior to SMR Dec-2024 Release 1 allows physical attackers to temporarily access to recent app list. | Android | 2.4 | ||
2024-12-03 | CVE-2024-49415 | Out-of-bound write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code. | Android | 9.8 |