CVE Feed

    Dashboard / CVE

    8.4
    High

    CVE-2023-33088

    Last Modified: 11 Aug 2025

    Memory corruption when processing cmd parameters while parsing vdev.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-33087

    Last Modified: 11 Aug 2025

    Memory corruption in Core while processing RX intent request.

    Published: 5 Dec 2023
    9.8
    Critical

    CVE-2023-33083

    Last Modified: 2 Dec 2024

    Memory corruption in WLAN Host while processing RRM beacon on the AP.

    Published: 5 Dec 2023
    9.8
    Critical

    CVE-2023-33082

    Last Modified: 25 Feb 2026

    Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33081

    Last Modified: 21 Nov 2024

    Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33080

    Last Modified: 11 Aug 2025

    Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-33079

    Last Modified: 11 Aug 2025

    Memory corruption in Audio while running invalid audio recording from ADSP.

    Published: 5 Dec 2023
    8.4
    High

    CVE-2023-33071

    Last Modified: 25 Feb 2026

    Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.

    Published: 5 Dec 2023
    7.1
    High

    CVE-2023-33070

    Last Modified: 11 Aug 2025

    Transient DOS in Automotive OS due to improper authentication to the secure IO calls.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-33063

    Last Modified: 27 Oct 2025

    Memory corruption in DSP Services during a remote call from HLOS to DSP.

    Published: 5 Dec 2023
    9.1
    Critical

    CVE-2023-33054

    Last Modified: 11 Aug 2025

    Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.

    Published: 5 Dec 2023
    8.4
    High

    CVE-2023-33053

    Last Modified: 11 Aug 2025

    Memory corruption in Kernel while parsing metadata.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33044

    Last Modified: 11 Aug 2025

    Transient DOS in Data modem while handling TLB control messages from the Network.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33043

    Last Modified: 11 Aug 2025

    Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33042

    Last Modified: 11 Aug 2025

    Transient DOS in Modem after RRC Setup message is received.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-33041

    Last Modified: 21 Nov 2024

    Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-33024

    Last Modified: 25 Feb 2026

    Memory corruption while sending SMS from AP firmware.

    Published: 5 Dec 2023
    8.4
    High

    CVE-2023-33022

    Last Modified: 11 Aug 2025

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-33018

    Last Modified: 11 Aug 2025

    Memory corruption while using the UIM diag command to get the operators name.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-33017

    Last Modified: 11 Aug 2025

    Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-28588

    Last Modified: 11 Aug 2025

    Transient DOS in Bluetooth Host while rfc slot allocation.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-28587

    Last Modified: 11 Aug 2025

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

    Published: 5 Dec 2023
    6
    Medium

    CVE-2023-28586

    Last Modified: 11 Aug 2025

    Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

    Published: 5 Dec 2023
    8.2
    High

    CVE-2023-28585

    Last Modified: 25 Feb 2026

    Memory corruption while loading an ELF segment in TEE Kernel.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-28580

    Last Modified: 11 Aug 2025

    Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-28579

    Last Modified: 11 Aug 2025

    Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-28551

    Last Modified: 11 Aug 2025

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-28550

    Last Modified: 11 Aug 2025

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

    Published: 5 Dec 2023
    7.8
    High

    CVE-2023-28546

    Last Modified: 25 Feb 2026

    Memory Corruption in SPS Application while exporting public key in sorter TA.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-22668

    Last Modified: 25 Feb 2026

    Memory Corruption in Audio while invoking IOCTLs calls from the user-space.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-22383

    Last Modified: 11 Aug 2025

    Memory Corruption in camera while installing a fd for a particular DMA buffer.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-21634

    Last Modified: 21 Nov 2024

    Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.

    Published: 5 Dec 2023
    6.7
    Medium

    CVE-2023-42563

    Last Modified: 21 Nov 2024

    Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-42581

    Last Modified: 21 Nov 2024

    Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data.

    Published: 5 Dec 2023
    7.5
    High

    CVE-2023-42580

    Last Modified: 21 Nov 2024

    Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK from Galaxy Store.

    Published: 5 Dec 2023
    6.5
    Medium

    CVE-2023-42579

    Last Modified: 21 Nov 2024

    Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in Android 11, 5.4.60.49, 5.4.85.5, 5.5.00.58 in Android 12, and 5.6.00.52, 5.6.10.42, 5.7.00.45 in Android 13 allows adjacent attackers to access keystroke data using Man-in-the-Middle attack.

    Published: 5 Dec 2023
    6.5
    Medium

    CVE-2023-42578

    Last Modified: 21 Nov 2024

    Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.

    Published: 5 Dec 2023
    6.8
    Medium

    CVE-2023-42577

    Last Modified: 21 Nov 2024

    Improper Access Control in Samsung Voice Recorder prior to versions 21.4.15.01 in Android 12 and Android 13, 21.4.50.17 in Android 14 allows physical attackers to access Voice Recorder information on the lock screen.

    Published: 5 Dec 2023
    5.4
    Medium

    CVE-2023-42576

    Last Modified: 5 Jun 2025

    Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.

    Published: 5 Dec 2023
    5.4
    Medium

    CVE-2023-42575

    Last Modified: 21 Nov 2024

    Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.

    Published: 5 Dec 2023
    5.1
    Medium

    CVE-2023-42574

    Last Modified: 21 Nov 2024

    Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrary activity in GameHomeCN.

    Published: 5 Dec 2023
    4.7
    Medium

    CVE-2023-42573

    Last Modified: 21 Nov 2024

    PendingIntent hijacking vulnerability in Search Widget prior to version 3.4 in China models allows local attackers to access data.

    Published: 5 Dec 2023
    3.3
    Low

    CVE-2023-42572

    Last Modified: 21 Nov 2024

    Implicit intent hijacking vulnerability in Samsung Account Web SDK prior to version 1.5.24 allows attacker to get sensitive information.

    Published: 5 Dec 2023
    7.6
    High

    CVE-2023-42571

    Last Modified: 2 Dec 2024

    Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.

    Published: 5 Dec 2023
    5.9
    Medium

    CVE-2023-42570

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to access device SIM PIN.

    Published: 5 Dec 2023
    4
    Medium

    CVE-2023-42569

    Last Modified: 21 Nov 2024

    Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.

    Published: 5 Dec 2023
    7.3
    High

    CVE-2023-42568

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.

    Published: 5 Dec 2023
    7.3
    High

    CVE-2023-42567

    Last Modified: 21 Nov 2024

    Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.

    Published: 5 Dec 2023
    7.3
    High

    CVE-2023-42566

    Last Modified: 21 Nov 2024

    Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrary code.

    Published: 5 Dec 2023
    7.3
    High

    CVE-2023-42565

    Last Modified: 21 Nov 2024

    Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell privilege to execute arbitrary code.

    Published: 5 Dec 2023