CVE-2025-20916 |
Description: Out-of-bounds read in reading string of SPen in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
March 6th, 2025 (4 months ago)
|
CVE-2025-20915 |
Description: Out-of-bounds read in applying binary of voice content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
March 6th, 2025 (4 months ago)
|
CVE-2025-20914 |
Description: Out-of-bounds read in applying binary of hand writing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
March 6th, 2025 (4 months ago)
|
CVE-2025-20913 |
Description: Out-of-bounds read in applying binary of drawing content in Samsung Notes prior to version 4.4.26.71 allows attackers to read out-of-bounds memory.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
March 6th, 2025 (4 months ago)
|
CVE-2025-20912 |
Description: Incorrect default permission in DiagMonAgent prior to SMR Mar-2025 Release 1 allows local attackers to access data within Galaxy Watch.
CVSS: MEDIUM (6.2) EPSS Score: 0.02%
March 6th, 2025 (4 months ago)
|
CVE-2025-20911 |
Description: Improper access control in sem_wifi service prior to SMR Mar-2025 Release 1 allows privileged local attackers to update MAC address of Galaxy Watch.
CVSS: MEDIUM (4.4) EPSS Score: 0.02%
March 6th, 2025 (4 months ago)
|
CVE-2025-20910 |
Description: Incorrect default permission in Galaxy Watch Gallery prior to SMR Mar-2025 Release 1 allows local attackers to access data in Galaxy Watch Gallery.
CVSS: MEDIUM (6.2) EPSS Score: 0.02%
March 6th, 2025 (4 months ago)
|
CVE-2025-20909 |
Description: Use of implicit intent for sensitive communication in Settings prior to SMR Mar-2025 Release 1 allows local attackers to access sensitive information.
CVSS: MEDIUM (4.0) EPSS Score: 0.02%
March 6th, 2025 (4 months ago)
|
CVE-2025-20908 |
Description: Use of insufficiently random values in Auracast prior to SMR Mar-2025 Release 1 allows adjacent attackers to access Auracast broadcasting.
CVSS: MEDIUM (6.5) EPSS Score: 0.02%
March 6th, 2025 (4 months ago)
|
CVE-2025-20903 |
Description: Improper access control in SecSettingsIntelligence prior to SMR Mar-2025 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.
CVSS: HIGH (7.3) EPSS Score: 0.01%
March 6th, 2025 (4 months ago)
|