Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Android
(Samsung)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 235 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-07-02 | CVE-2024-20888 | Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability. | Android | 7.8 | ||
2024-07-02 | CVE-2024-20889 | Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices. | Android | 4.3 | ||
2024-07-02 | CVE-2024-20896 | Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. | Android | 5.5 | ||
2024-07-02 | CVE-2024-20890 | Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior. | Android | 8.8 | ||
2024-07-02 | CVE-2024-20898 | Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. | Android | 5.5 | ||
2024-07-02 | CVE-2024-20891 | Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. | Android | 7.8 | ||
2024-07-02 | CVE-2024-20892 | Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors. User interaction is required for triggering this vulnerability. | Android | 7.8 | ||
2024-07-02 | CVE-2024-20899 | Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. | Android | 5.5 | ||
2024-07-02 | CVE-2024-20900 | Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication. | Android | 3.3 | ||
2024-07-02 | CVE-2024-20893 | Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption. | Android | 7.8 |