← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Android
Feb 5, 2026
Mar 6, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of insufficiently random values in Auracast prior to SMR Mar-2025 Release 1 allows adjacent attackers to access Auracast broadcasting.
1Samsung
1Android
Feb 5, 2026
Mar 6, 2025
N/A· v4
7.3 HIGH· v3
N/A· v2
Improper access control in SecSettingsIntelligence prior to SMR Mar-2025 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.
1Samsung
3Exynos 1480 Firmware
Exynos 2200 FirmwareExynos 2400 Firmware
Jun 20, 2025
Feb 12, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. The absence of a null check leads to a Denial of Service at amdgpu_cs_ib_fill in the Xclipse Driver.
1Samsung
2Exynos 1480 Firmware
Exynos 2400 Firmware
Jun 20, 2025
Feb 12, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The absence of a null check leads to a Denial of Service at amdgpu_cs_parser_bos in the Xclipse Driver.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to read and write out-of-bounds memory.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to cause memory corruption.
1Samsung
1Blockchain Keystore
Jul 17, 2025
Feb 4, 2025
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Out-of-bounds read in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to read out-of-bounds memory.
1Samsung
1Blockchain Keystore
Jul 17, 2025
Feb 4, 2025
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Out-of-bounds write in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to write out-of-bounds memory.
1Samsung
1Members
Jul 17, 2025
Feb 4, 2025
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper input validation in Samsung Members prior to version 5.2.00.12 allows physical attackers to access data across multiple user profiles.
1Samsung
1Easysetup
Jul 17, 2025
Feb 4, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication in EasySetup prior to version 11.1.18 allows local attackers to access sensitive information.
1Samsung
1Galaxy Store
Jul 17, 2025
Feb 4, 2025
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard.
1Samsung
1Email
Jul 17, 2025
Feb 4, 2025
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper access control in Samsung Email prior to version 6.1.97.1 allows physical attackers to access data across multiple user profiles.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
5.1 MEDIUM· v3
N/A· v2
Improper access control in NotificationManager prior to SMR Jan-2025 Release 1 allows local attackers to change the configuration of notifications.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this vulnerability.
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vul...Show more
Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability...Show more
Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerabili...Show more
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this...Show more
Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Feb 12, 2025
Feb 4, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.