CVE-2023-33088
Last Modified: 11 Aug 2025Memory corruption when processing cmd parameters while parsing vdev.
CVE-2023-33087
Last Modified: 11 Aug 2025Memory corruption in Core while processing RX intent request.
CVE-2023-33083
Last Modified: 2 Dec 2024Memory corruption in WLAN Host while processing RRM beacon on the AP.
CVE-2023-33082
Last Modified: 25 Feb 2026Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
CVE-2023-33081
Last Modified: 21 Nov 2024Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
CVE-2023-33080
Last Modified: 11 Aug 2025Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
CVE-2023-33079
Last Modified: 11 Aug 2025Memory corruption in Audio while running invalid audio recording from ADSP.
CVE-2023-33071
Last Modified: 25 Feb 2026Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.
CVE-2023-33070
Last Modified: 11 Aug 2025Transient DOS in Automotive OS due to improper authentication to the secure IO calls.
CVE-2023-33063
Last Modified: 27 Oct 2025Memory corruption in DSP Services during a remote call from HLOS to DSP.
CVE-2023-33054
Last Modified: 11 Aug 2025Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
CVE-2023-33053
Last Modified: 11 Aug 2025Memory corruption in Kernel while parsing metadata.
CVE-2023-33044
Last Modified: 11 Aug 2025Transient DOS in Data modem while handling TLB control messages from the Network.
CVE-2023-33043
Last Modified: 11 Aug 2025Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
CVE-2023-33042
Last Modified: 11 Aug 2025Transient DOS in Modem after RRC Setup message is received.
CVE-2023-33041
Last Modified: 21 Nov 2024Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
CVE-2023-33024
Last Modified: 25 Feb 2026Memory corruption while sending SMS from AP firmware.
CVE-2023-33022
Last Modified: 11 Aug 2025Memory corruption in HLOS while invoking IOCTL calls from user-space.
CVE-2023-33018
Last Modified: 11 Aug 2025Memory corruption while using the UIM diag command to get the operators name.
CVE-2023-33017
Last Modified: 11 Aug 2025Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
CVE-2023-28588
Last Modified: 11 Aug 2025Transient DOS in Bluetooth Host while rfc slot allocation.
CVE-2023-28587
Last Modified: 11 Aug 2025Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-28586
Last Modified: 11 Aug 2025Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
CVE-2023-28585
Last Modified: 25 Feb 2026Memory corruption while loading an ELF segment in TEE Kernel.
CVE-2023-28580
Last Modified: 11 Aug 2025Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.
CVE-2023-28579
Last Modified: 11 Aug 2025Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.
CVE-2023-28551
Last Modified: 11 Aug 2025Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
CVE-2023-28550
Last Modified: 11 Aug 2025Memory corruption in MPP performance while accessing DSM watermark using external memory address.
CVE-2023-28546
Last Modified: 25 Feb 2026Memory Corruption in SPS Application while exporting public key in sorter TA.
CVE-2023-22668
Last Modified: 25 Feb 2026Memory Corruption in Audio while invoking IOCTLs calls from the user-space.
CVE-2023-22383
Last Modified: 11 Aug 2025Memory Corruption in camera while installing a fd for a particular DMA buffer.
CVE-2023-21634
Last Modified: 21 Nov 2024Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
CVE-2023-42563
Last Modified: 21 Nov 2024Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.
CVE-2023-42581
Last Modified: 21 Nov 2024Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data.
CVE-2023-42580
Last Modified: 21 Nov 2024Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK from Galaxy Store.
CVE-2023-42579
Last Modified: 21 Nov 2024Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in Android 11, 5.4.60.49, 5.4.85.5, 5.5.00.58 in Android 12, and 5.6.00.52, 5.6.10.42, 5.7.00.45 in Android 13 allows adjacent attackers to access keystroke data using Man-in-the-Middle attack.
CVE-2023-42578
Last Modified: 21 Nov 2024Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.
CVE-2023-42577
Last Modified: 21 Nov 2024Improper Access Control in Samsung Voice Recorder prior to versions 21.4.15.01 in Android 12 and Android 13, 21.4.50.17 in Android 14 allows physical attackers to access Voice Recorder information on the lock screen.
CVE-2023-42576
Last Modified: 5 Jun 2025Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.
CVE-2023-42575
Last Modified: 21 Nov 2024Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.
CVE-2023-42574
Last Modified: 21 Nov 2024Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrary activity in GameHomeCN.
CVE-2023-42573
Last Modified: 21 Nov 2024PendingIntent hijacking vulnerability in Search Widget prior to version 3.4 in China models allows local attackers to access data.
CVE-2023-42572
Last Modified: 21 Nov 2024Implicit intent hijacking vulnerability in Samsung Account Web SDK prior to version 1.5.24 allows attacker to get sensitive information.
CVE-2023-42571
Last Modified: 2 Dec 2024Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.
CVE-2023-42570
Last Modified: 21 Nov 2024Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to access device SIM PIN.
CVE-2023-42569
Last Modified: 21 Nov 2024Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.
CVE-2023-42568
Last Modified: 21 Nov 2024Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.
CVE-2023-42567
Last Modified: 21 Nov 2024Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.
CVE-2023-42566
Last Modified: 21 Nov 2024Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-42565
Last Modified: 21 Nov 2024Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell privilege to execute arbitrary code.
