← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Health
Nov 21, 2024
Jul 2, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerab...Show more
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Smartthings
Nov 21, 2024
Jul 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for members set by the owner.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for tri...Show more
Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerab...Show more
Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for trigge...Show more
Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for trigge...Show more
Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerabil...Show more
Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerabil...Show more
Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
6.8 MEDIUM· v3
N/A· v2
Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is requ...Show more
Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.Show less
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifier.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds memory.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.
1Samsung
1Android
Nov 21, 2024
Jul 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.