Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1631 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-20990 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper access control in accessing system device node prior to SMR Aug-2025 Release 1 allows local attackers to access device identifier.
CVE-2025-20989 1 Samsung 1 Android 2026-06-17 N/A 5.2 MEDIUM
Improper logging in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get a hmac_key.
CVE-2025-20988 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Out-of-bounds read in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to read out-of-bounds memory.
CVE-2025-20987 1 Samsung 1 Android 2026-06-17 N/A 5.2 MEDIUM
Improper access control in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get a auth_token.
CVE-2025-20986 1 Samsung 11 Galaxy Watch, Galaxy Watch 4, Galaxy Watch 4 Classic and 8 more 2026-06-17 N/A 5.5 MEDIUM
Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take screenshots.
CVE-2025-20985 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper privilege management in ThemeManager prior to SMR Jun-2025 Release 1 allows local privileged attackers to reuse trial items.
CVE-2025-20984 1 Samsung 11 Galaxy Watch, Galaxy Watch 4, Galaxy Watch 4 Classic and 8 more 2026-06-17 N/A 6.8 MEDIUM
Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to access data in Samsung Cloud for Galaxy Watch.
CVE-2025-20983 1 Samsung 1 Android 2026-06-17 N/A 6.4 MEDIUM
Out-of-bounds write in checking auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20982 1 Samsung 1 Android 2026-06-17 N/A 6.4 MEDIUM
Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20981 1 Samsung 1 Android 2026-06-17 N/A 6.2 MEDIUM
Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-20977 1 Samsung 1 Notes 2026-06-17 N/A 3.3 LOW
Use of implicit intent for sensitive communication in translation in Samsung Notes prior to version 4.4.29.23 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.
CVE-2025-20976 1 Samsung 1 Notes 2026-06-17 N/A 5.5 MEDIUM
Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.29.23 allows attackers to read out-of-bounds memory.
CVE-2025-20972 1 Samsung 1 Flow 2026-06-17 N/A 6.2 MEDIUM
Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flow configuration.
CVE-2025-20971 1 Samsung 1 Flow 2026-06-17 N/A 5.5 MEDIUM
Improper input validation in Samsung Flow prior to version 4.9.17.6 allows local attackers to access data within Samsung Flow.
CVE-2025-20969 1 Samsung 2 Android, Gallery 2026-06-17 N/A 5.5 MEDIUM
Improper input validation in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows local attackers to access data within Samsung Gallery.
CVE-2025-20968 1 Samsung 2 Android, Gallery 2026-06-17 N/A 7.2 HIGH
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows remote attackers to access data and perform internal operations within Samsung Gallery.
CVE-2025-20967 1 Samsung 2 Android, Gallery 2026-06-17 N/A 5.1 MEDIUM
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows attackers to read and write arbitrary file with the privilege of Samsung Gallery.
CVE-2025-20966 1 Samsung 2 Android, Gallery 2026-06-17 N/A 4.6 MEDIUM
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.
CVE-2025-20965 1 Samsung 1 Bixby 2026-06-17 N/A 6.2 MEDIUM
Improper handling of insufficient permission in Bixby wakeup prior to version 2.3.74.8 allows local attackers to access sensitive data.
CVE-2025-20964 1 Samsung 1 Android 2026-06-17 N/A 6.6 MEDIUM
Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.