CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-20893

Description: Improper access control in NotificationManager prior to SMR Jan-2025 Release 1 allows local attackers to change the configuration of notifications.

CVSS: MEDIUM (5.1)

EPSS Score: 0.04%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20892

Description: Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this vulnerability.

CVSS: MEDIUM (5.9)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20891

Description: Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVSS: MEDIUM (5.3)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20890

Description: Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVSS: HIGH (7.0)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20889

Description: Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVSS: MEDIUM (5.3)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20888

Description: Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.

CVSS: HIGH (7.0)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20887

Description: Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.

CVSS: MEDIUM (5.3)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20886

Description: Inclusion of sensitive information in test code in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to get test key.

CVSS: MEDIUM (4.1)

EPSS Score: 0.04%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20885

Description: Out-of-bounds write in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged attackers to cause memory corruption.

CVSS: MEDIUM (6.4)

EPSS Score: 0.04%

Source: CVE
February 5th, 2025 (5 months ago)

CVE-2025-20884

Description: Improper access control in Samsung Message prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.

CVSS: MEDIUM (4.6)

EPSS Score: 0.05%

Source: CVE
February 5th, 2025 (5 months ago)