Samsung Android 10.0 SMR-FEB-2021-R1

CPE Details

Samsung Android 10.0 SMR-FEB-2021-R1
10.0
2023-02-17
14h37 +00:00
2023-02-17
17h57 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:samsung:android:10.0:smr-feb-2021-r1:*:*:*:*:*:*

Informations

Vendor

samsung

Product

android

Version

10.0

Update

smr-feb-2021-r1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-21420 2023-02-09 00h00 +00:00 Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary code execution.
7.8
High
CVE-2023-21421 2023-02-09 00h00 +00:00 Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker to access device SIM PIN.
7.8
High
CVE-2023-21425 2023-02-09 00h00 +00:00 Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to get sensitive information.
5.5
Medium
CVE-2023-21426 2023-02-09 00h00 +00:00 Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN.
5.5
Medium
CVE-2023-21429 2023-02-09 00h00 +00:00 Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID.
4
Medium
CVE-2023-21430 2023-02-09 00h00 +00:00 An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR JAN-2023 Release 1 allows attacker to cause memory access fault.
7.8
High
CVE-2023-21436 2023-02-09 00h00 +00:00 Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account ID.
3.3
Low
CVE-2023-21437 2023-02-09 00h00 +00:00 Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to access sensitive information via implicit broadcast.
5.5
Medium
CVE-2023-21441 2023-02-09 00h00 +00:00 Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.
7.4
High
CVE-2021-25489 2021-10-06 17h10 +00:00 Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.
5.5
Medium
CVE-2021-25487 2021-10-06 17h10 +00:00 Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.
7.8
High
CVE-2021-25394 2021-06-11 14h45 +00:00 A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.
6.4
Medium
CVE-2021-25395 2021-06-11 14h45 +00:00 A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.
6.4
Medium
CVE-2021-25372 2021-03-26 18h25 +00:00 An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
6.7
Medium
CVE-2021-25371 2021-03-26 18h24 +00:00 A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
6.7
Medium
CVE-2021-25370 2021-03-26 18h23 +00:00 An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.
6.1
Medium
CVE-2021-25369 2021-03-26 18h22 +00:00 An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
6.2
Medium
CVE-2021-25337 2021-03-04 20h59 +00:00 Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.
7.1
High