Where
-Infinity
0
Severity
9.8
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.

1 / 2
Source: NVD
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.

1 / 2
Source: NVD
First published (updated )
Severity
4.4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.

1 / 2
First published (updated )
Severity
7.8
Use After Free
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

1 / 2
First published (updated )
Severity
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Lack of boundary checking of a buffer in setskbpriv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

1 / 2
First published (updated )
Severity
5.5
Input Validation
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

1 / 2
First published (updated )
Severity
6.4
Race Condition, Use After Free
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.

1 / 2
First published (updated )
Severity
6.4
Race Condition, Use After Free
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.

1 / 2
First published (updated )
Severity
6.2
Infoleak
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Samsung mobile devices using Mali GPU contains an improper access control vulnerability in seclog file. Exploitation of the vulnerability exposes sensitive kernel information to the userspace. This vulnerability was chained with CVE-2021-25337 and CVE-2021-25370.

1 / 2
Source: CISA
First published (updated )
Severity
6.1
Use After Free
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

1 / 2
First published (updated )
Severity
6.7
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

1 / 2
First published (updated )
Severity
6.7
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

1 / 2
First published (updated )
Severity
7.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.

1 / 2
First published (updated )
EOL
Mar 28, 2031
Support Ends
Mar 28, 2031

End of life: 3/28/2031, End of support: 3/28/2031

First published (updated )
EOL
Mar 28, 2031
Support Ends
Mar 28, 2031

End of life: 3/28/2031, End of support: 3/28/2031

First published (updated )
EOL
Mar 28, 2031
Support Ends
Mar 28, 2031

End of life: 3/28/2031, End of support: 3/28/2031

First published (updated )
EOL
Feb 19, 2031
Support Ends
Feb 19, 2031

End of life: 2/19/2031, End of support: 2/19/2031

First published (updated )
EOL
Feb 3, 2032
Support Ends
Feb 3, 2032

End of life: 2/3/2032, End of support: 2/3/2032

First published (updated )
EOL
Feb 3, 2032
Support Ends
Feb 3, 2032

End of life: 2/3/2032, End of support: 2/3/2032

First published (updated )
EOL
Feb 3, 2032
Support Ends
Feb 3, 2032

End of life: 2/3/2032, End of support: 2/3/2032

First published (updated )
EOL
Feb 3, 2032
Support Ends
Feb 3, 2032

End of life: 2/3/2032, End of support: 2/3/2032

First published (updated )
EOL
Feb 3, 2032
Support Ends
Feb 3, 2032

End of life: 2/3/2032, End of support: 2/3/2032

First published (updated )
EOL
Nov 20, 2030
Support Ends
Nov 20, 2030

End of life: 11/20/2030, End of support: 11/20/2030

EOL
Nov 20, 2030
Support Ends
Nov 20, 2030

End of life: 11/20/2030, End of support: 11/20/2030

First published (updated )
EOL
Oct 24, 2031
Support Ends
Oct 24, 2031

End of life: 10/24/2031, End of support: 10/24/2031

EOL
Sep 26, 2031
Support Ends
Sep 26, 2031

End of life: 9/26/2031, End of support: 9/26/2031

First published (updated )
EOL
Aug 22, 2028
Support Ends
Aug 22, 2026

End of life: 8/22/2028, End of support: 8/22/2026

First published (updated )
Severity
7.8
Code Injection
AV:N/AC:L/Au:N/C:N/I:N/A:C

The Remote Controls feature on Samsung mobile devices does not validate the source of lock-code data received over a network, which makes it easier for remote attackers to cause a denial of service (screen locking with an arbitrary code) by triggering unexpected Find My Mobile network traffic.

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203