Samsung Exynos 9830

CPE Details

Samsung Exynos 9830
-
2020-09-02
16h56 +00:00
2020-09-02
16h56 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:samsung:exynos_9830:-:*:*:*:*:*:*:*

Informations

Vendor

samsung

Product

exynos_9830

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-27834 2022-04-11 17h37 +00:00 Use after free vulnerability in dsp_context_unload_graph function of DSP driver prior to SMR Apr-2022 Release 1 allows attackers to perform malicious actions.
7
High
CVE-2022-27833 2022-04-11 17h37 +00:00 Improper input validation in DSP driver prior to SMR Apr-2022 Release 1 allows out-of-bounds write by integer overflow.
7.8
High
CVE-2021-25500 2021-11-05 01h03 +00:00 A missing input validation in HDCP LDFW prior to SMR Nov-2021 Release 1 allows attackers to overwrite TZASC allowing TEE compromise.
7.2
High
CVE-2021-25475 2021-10-06 15h08 +00:00 A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution.
6.7
Medium
CVE-2021-25467 2021-10-06 15h07 +00:00 Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows privilege escalation to Root by hijacking loaded library.
6.7
Medium
CVE-2021-25457 2021-09-09 16h04 +00:00 An improper input validation vulnerability in DSP driver prior to SMR Sep-2021 Release 1 allows local attackers to get a limited kernel memory information.
5.9
Medium
CVE-2021-25452 2021-09-09 16h04 +00:00 An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent denial of service on the device.
5.5
Medium
CVE-2021-25396 2021-06-11 12h45 +00:00 An improper input validation vulnerability in NPU firmware prior to SMR MAY-2021 Release 1 allows arbitrary memory write and code execution.
6.7
Medium
CVE-2021-25415 2021-06-11 12h33 +00:00 Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attackers to remap EL2 memory as writable.
5.5
Medium
CVE-2021-25416 2021-06-11 12h33 +00:00 Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attackers to create executable kernel page outside code area.
6.5
Medium
CVE-2021-25407 2021-06-11 12h33 +00:00 A possible out of bounds write vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write.
7.8
High
CVE-2021-25408 2021-06-11 12h33 +00:00 A possible buffer overflow vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write and code execution.
7.8
High
CVE-2021-25411 2021-06-11 12h33 +00:00 Improper address validation vulnerability in RKP api prior to SMR JUN-2021 Release 1 allows root privileged local attackers to write read-only kernel memory.
4.4
Medium
CVE-2021-25372 2021-03-26 18h25 +00:00 An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
6.7
Medium
CVE-2021-25371 2021-03-26 18h24 +00:00 A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
6.7
Medium
CVE-2021-25339 2021-03-04 20h00 +00:00 Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corrupt EL2 memory.
5.2
Medium
CVE-2021-25338 2021-03-04 19h59 +00:00 Improper memory access control in RKP in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to write certain part of RKP EL2 memory region.
5.2
Medium
CVE-2020-28343 2020-11-08 03h03 +00:00 An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 980, 9820, and 9830 chipsets) software. The NPU driver allows attackers to execute arbitrary code because of unintended write and read operations on memory. The Samsung ID is SVE-2020-18610 (November 2020).
7.8
High
CVE-2020-25052 2020-08-31 18h24 +00:00 An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to execute arbitrary code or cause a denial of service (memory corruption) because indexes are mishandled. The Samsung ID is SVE-2020-17426 (August 2020).
9.8
Critical
CVE-2020-25053 2020-08-31 18h23 +00:00 An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The Samsung ID is SVE-2020-17435 (August 2020).
9.8
Critical