Vulnerabilities
Vulnerable Software
Samsung:  Security Vulnerabilities
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.
CVSS Score
5.6
EPSS Score
0.002
Published
2024-04-02
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVSS Score
8.4
EPSS Score
0.002
Published
2024-04-02
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVSS Score
8.4
EPSS Score
0.002
Published
2024-04-02
Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privilege to cause memory corruption.
CVSS Score
4.1
EPSS Score
0.001
Published
2024-03-05
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers to access recording files on the lock screen.
CVSS Score
4.6
EPSS Score
0.003
Published
2024-03-05
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers using hardware keyboard to use VoiceRecorder on the lock screen.
CVSS Score
5.7
EPSS Score
0.002
Published
2024-03-05
Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.
CVSS Score
5.1
EPSS Score
0.002
Published
2024-03-05
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.
CVSS Score
5.3
EPSS Score
0.001
Published
2024-03-05
Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.
CVSS Score
6.8
EPSS Score
0.002
Published
2024-03-05
The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission.
CVSS Score
3.3
EPSS Score
0.001
Published
2024-03-05


Contact Us

Shodan ® - All rights reserved