← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
9Exynos 1080 Firmware
Exynos 1280 FirmwareExynos 1330 Firmware+6 more
Mar 14, 2025
Sep 9, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_sca...Show more
An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_ind(), there is no input validation check on a length coming from userspace, which can lead to integer overflow and a potential heap over-read.Show less
1Samsung
9Exynos 1080 Firmware
Exynos 1280 FirmwareExynos 1330 Firmware+6 more
Mar 25, 2025
Sep 9, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_sc...Show more
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_done_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.Show less
1Samsung
9Exynos 1080 Firmware
Exynos 1280 FirmwareExynos 1330 Firmware+6 more
Mar 20, 2025
Sep 9, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_roamed_ind(), the...Show more
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_roamed_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.Show less
1Samsung
1Assistant
Sep 5, 2024
Sep 4, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper handling of insufficient permissions in Samsung Assistant prior to version 9.1.00.7 allows remote attackers to access location data. User interaction is required for triggering this vulnerability.
1Samsung
1Notes
Sep 5, 2024
Sep 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
1Samsung
1Group Sharing
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.3 MEDIUM· v3
N/A· v2
Exposure of sensitive information in GroupSharing prior to version 13.6.13.3 allows remote attackers can force the victim to join the group.
1Samsung
1Notes
Sep 5, 2024
Sep 4, 2024
N/A· v4
7.1 HIGH· v3
N/A· v2
Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.
1Samsung
1Notes
Sep 5, 2024
Sep 4, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.
1Samsung
1Notes
Sep 6, 2024
Sep 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to access privileged API related to UniversalCredentialManager.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper Export of android application component in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access files with My Files' privilege.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Path Traversal in My Files prior to SMR Sep-2024 Release 1 allows physical attackers to access directories with My Files' privilege.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related to performance including app usage.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper authorization in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access restricted data in My Files.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to Edge panel.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
2.4 LOW· v3
N/A· v2
Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access an unlocked screen.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1 allows local attackers to access sensitive data.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Incorrect use of privileged API in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to knox without proper license.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to cause local permanent denial of service.
1Samsung
1Android
Sep 5, 2024
Sep 4, 2024
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper input validation in ThemeCenter prior to SMR Sep-2024 Release 1 allows physical attackers to install privileged applications.