Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1672 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21060 1 Samsung 1 Smart Switch 2026-06-17 N/A 5.5 MEDIUM
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.
CVE-2025-21059 1 Samsung 1 Health 2026-06-17 N/A 6.2 MEDIUM
Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung Health.
CVE-2025-21057 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to access shared notes.
CVE-2025-21055 1 Samsung 1 Android 2026-06-17 N/A 4.3 MEDIUM
Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows remote attackers to access out-of-bounds memory.
CVE-2025-21054 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to potentially access out-of-bounds memory.
CVE-2025-21053 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.
CVE-2025-21052 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.
CVE-2025-21051 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2025-21050 1 Samsung 1 Android 2026-06-17 N/A 7.1 HIGH
Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across multiple user profiles.
CVE-2025-21049 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.
CVE-2025-21048 1 Samsung 1 Android 2026-06-17 N/A 6.7 MEDIUM
Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary code.
CVE-2025-21047 1 Samsung 1 Android 2026-06-17 N/A 5.2 MEDIUM
Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged APIs.
CVE-2025-21046 1 Samsung 1 Android 2026-06-17 N/A 2.4 LOW
Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to temporarily access to recent app list.
CVE-2025-21045 1 Samsung 11 Galaxy Watch, Galaxy Watch 4, Galaxy Watch 4 Classic and 8 more 2026-06-17 N/A 4.0 MEDIUM
Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information.
CVE-2025-21044 1 Samsung 1 Android 2026-06-17 N/A 5.7 MEDIUM
Out-of-bounds write in fingerprint trustlet prior to SMR Oct-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-21043 1 Samsung 1 Android 2026-06-17 N/A 8.8 HIGH
Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
CVE-2025-21042 1 Samsung 1 Android 2026-06-17 N/A 8.8 HIGH
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.
CVE-2025-21041 1 Samsung 1 Android 2026-06-17 N/A 6.2 MEDIUM
Insecure Storage of Sensitive Information in Secure Folder prior to Android 16 allows local attackers to access sensitive information.
CVE-2025-21040 1 Samsung 1 Sassistant 2026-06-17 N/A 5.1 MEDIUM
Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerary information.
CVE-2025-21039 1 Samsung 1 Sassistant 2026-06-17 N/A 5.1 MEDIUM
Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerary information.