Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Filtered by product Android
Total 475 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-20982 1 Samsung 1 Android 2026-06-17 N/A 6.4 MEDIUM
Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-20981 1 Samsung 1 Android 2026-06-17 N/A 6.2 MEDIUM
Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-20969 1 Samsung 2 Android, Gallery 2026-06-17 N/A 5.5 MEDIUM
Improper input validation in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows local attackers to access data within Samsung Gallery.
CVE-2025-20968 1 Samsung 2 Android, Gallery 2026-06-17 N/A 7.2 HIGH
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows remote attackers to access data and perform internal operations within Samsung Gallery.
CVE-2025-20967 1 Samsung 2 Android, Gallery 2026-06-17 N/A 5.1 MEDIUM
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows attackers to read and write arbitrary file with the privilege of Samsung Gallery.
CVE-2025-20966 1 Samsung 2 Android, Gallery 2026-06-17 N/A 4.6 MEDIUM
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.
CVE-2025-20964 1 Samsung 1 Android 2026-06-17 N/A 6.6 MEDIUM
Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2025-20963 1 Samsung 1 Android 2026-06-17 N/A 6.6 MEDIUM
Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2025-20962 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attackers to track the S Pen position.
CVE-2025-20961 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper handling of insufficient permission or privileges in sepunion service prior to SMR May-2025 Release 1 allows local privileged attackers to access files with system privilege.
CVE-2025-20960 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper handling of insufficient permission in CocktailBarService prior to SMR May-2025 Release 1 allows local attackers to use the privileged api.
CVE-2025-20959 1 Samsung 1 Android 2026-06-17 N/A 5.1 MEDIUM
Use of implicit intent for sensitive communication in Wi-Fi P2P service prior to SMR May-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-20958 1 Samsung 1 Android 2026-06-17 N/A 4.4 MEDIUM
Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoWiFi related behaviors.
CVE-2025-20957 1 Samsung 1 Android 2026-06-17 N/A 7.3 HIGH
Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch arbitrary activities with SmartManagerCN privilege.
CVE-2025-20955 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper Export of Android Application Components in NotificationHistoryImageProvider prior to SMR May-2025 Release 1 allows local attackers to access notification images.
CVE-2025-20954 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Use of implicit intent for sensitive communication in EnrichedCall prior to SMR May-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.
CVE-2025-20953 1 Samsung 1 Android 2026-06-17 N/A 5.1 MEDIUM
Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch activities within SmartManagerCN.
CVE-2025-20952 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper access control in Mdecservice prior to SMR Apr-2025 Release 1 allows local attackers to access arbitrary files with system privilege.
CVE-2025-20948 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Out-of-bounds read in enrollment with cdsp frame secfr trustlet prior to SMR Apr-2025 Release 1 allows local privileged attackers to read out-of-bounds memory.
CVE-2025-20947 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper handling of insufficient permission or privileges in ClipboardService prior to SMR Apr-2025 Release 1 allows local attackers to access image files across multiple users. User interaction is required for triggering this vulnerability.