Showing 13 vulnerabilities on this page for Mobile Devices

Signals CISA KEV Ransomware Nuclei
samsung vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Samsung Mobile Devices Out-of-Bounds Write Vulnerability

Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.

CWE-787Sep 12, 2025
CVSS8.8v3.1EPSS1.91%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Out-of-Bounds Write Vulnerability

Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.

CWE-787Sep 12, 2025
CVSS8.8v3.1EPSS33.2%PoCs1SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability

Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.

CWE-532May 4, 2023
CVSS4.4v3.1EPSS2.55%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Use-After-Free Vulnerability

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

CWE-703CWE-755Jan 7, 2022
CVSS5.0v3.1EPSS0.392%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Improper Input Validation Vulnerability

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

CWE-134CWE-20Oct 6, 2021
CVSS3.3v3.1EPSS0.531%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Out-of-Bounds Read Vulnerability

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

CWE-125Oct 6, 2021
CVSS7.3v3.1EPSS0.635%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Race Condition Vulnerability

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.

CWE-362CWE-416Jun 11, 2021
CVSS6.4v3.1EPSS0.401%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Race Condition Vulnerability

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.

CWE-362Jun 11, 2021
CVSS6.4v3.1EPSS0.366%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Improper Boundary Check Vulnerability

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

CWE-703CWE-787Mar 26, 2021
CVSS6.1v3.1EPSS0.804%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Unspecified Vulnerability

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

CWE-912Mar 26, 2021
CVSS6.1v3.1EPSS0.802%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Memory Corruption Vulnerability

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

CVSS6.1v3.1EPSS0.89%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Improper Access Control Vulnerability

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

CWE-200CWE-863Mar 26, 2021
CVSS6.2v3.1EPSS1.12%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Samsung Mobile Devices Improper Access Control Vulnerability

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.

CWE-269CWE-863Mar 4, 2021
CVSS4.4v3.1EPSS2.83%PoCs1SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX