Samsung Security Vulnerabilities (CVEs)

Track 413 security vulnerabilities affecting Samsung products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

20 Critical
146 High
245 Medium
2 Low
🔔 Get Alerts for Samsung
CVE-2025-20992 4.0

This vulnerability allows local attackers to read out-of-bounds memory in Samsung's camera library on affected devices. It affects Samsung devices run...

Jun 4, 2025
CVE-2025-20994 4.5

This vulnerability in Samsung Internet browser allows local attackers to read and write arbitrary files on non-Samsung devices due to improper permiss...

Jun 4, 2025
CVE-2025-20996 5.0

This vulnerability allows local attackers with physical or remote access to a device to read data with Smart Switch privileges when the user interacts...

Jun 4, 2025
CVE-2025-20981 6.2

An improper access control vulnerability in Samsung's AudioService allows local attackers to access sensitive information on affected devices. This af...

Jun 4, 2025
CVE-2025-20985 5.5

This vulnerability in Samsung's ThemeManager allows local privileged attackers to bypass trial restrictions and reuse premium theme items without paym...

Jun 4, 2025
CVE-2025-20987 5.2

This vulnerability allows local privileged attackers to obtain authentication tokens from the fingerprint trustlet component on Samsung devices. Attac...

Jun 4, 2025
CVE-2025-20989 5.2

This vulnerability in Samsung's fingerprint trustlet allows local privileged attackers to obtain HMAC keys through improper logging. It affects Samsun...

Jun 4, 2025
CVE-2025-23100 7.5

A NULL pointer dereference vulnerability in Samsung Exynos mobile processors allows attackers to cause a denial of service by triggering a system cras...

Jun 3, 2025
CVE-2025-23097 9.1

CVE-2025-23097 is a critical memory corruption vulnerability in Samsung's Exynos 1380 mobile processor where missing length validation allows attacker...

Jun 3, 2025
CVE-2025-23102 8.8

A double free vulnerability in Samsung Exynos mobile processors allows local attackers to escalate privileges by exploiting memory corruption. This af...

Jun 3, 2025
CVE-2025-23107 8.6

This vulnerability in Samsung Exynos 1480 and 2400 mobile processors allows attackers to write data beyond allocated memory boundaries due to missing ...

Jun 3, 2025
CVE-2025-23103 8.6

A memory corruption vulnerability in Samsung Exynos 1480 and 2400 mobile processors allows attackers to write data beyond allocated buffer boundaries....

Jun 3, 2025
CVE-2025-23099 9.1

A memory corruption vulnerability in Samsung Exynos 1480 and 2400 mobile processors allows attackers to write data beyond allocated memory boundaries....

Jun 2, 2025
CVE-2024-49197 6.5

This vulnerability in Samsung Exynos Wi-Fi chips allows out-of-bounds memory access due to missing boundary checks in the STOP_KEEP_ALIVE_OFFLOAD func...

May 27, 2025
CVE-2025-22377 6.5

A heap-based out-of-bounds write vulnerability in Samsung Exynos processors' GPRS protocol implementation allows attackers to write data beyond alloca...

May 27, 2025
CVE-2025-3885 6.5

This vulnerability allows attackers within Bluetooth range to crash Harman Becker MGU21 infotainment systems by sending malformed Bluetooth frames. No...

May 22, 2025
CVE-2025-32407 5.9

Samsung Internet for Galaxy Watch version 5.0.9 has a TLS certificate validation vulnerability that allows attackers to impersonate any website via ma...

May 16, 2025
CVE-2024-56427 6.5

This vulnerability in Samsung Exynos processors allows attackers to trigger out-of-bounds memory access by sending malformed RRC (Radio Resource Contr...

May 14, 2025
CVE-2025-26783 7.5

A vulnerability in Samsung's RRC (Radio Resource Control) implementation across multiple Exynos processors allows incorrect handling of undefined valu...

May 14, 2025
CVE-2025-27891 9.1

A memory corruption vulnerability in Samsung Exynos processors allows attackers to perform out-of-bounds reads via malformed NAS packets. This affects...

May 14, 2025
CVE-2025-26784 6.5

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length...

May 14, 2025
CVE-2025-26785 7.5

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length...

May 14, 2025
CVE-2025-4632 9.8

This vulnerability allows attackers to write arbitrary files with system-level privileges on Samsung MagicINFO 9 Server by exploiting improper pathnam...

May 13, 2025
CVE-2025-20976 5.5

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond intended boundaries when processing binary text content. T...

May 7, 2025
CVE-2025-20967 5.1

This vulnerability allows attackers to read and write arbitrary files with Samsung Gallery's privileges due to improper access control. It affects Sam...

May 7, 2025
CVE-2025-20968 7.2

This vulnerability allows remote attackers to bypass access controls in Samsung Gallery app, potentially accessing user data and performing unauthoriz...

May 7, 2025
CVE-2025-20972 6.2

This vulnerability in Samsung Flow allows local attackers to modify the application's configuration through improper intent verification in broadcast ...

May 7, 2025
CVE-2025-20961 5.5

This vulnerability in Samsung's sepunion service allows local privileged attackers to escalate privileges and access files with system-level permissio...

May 7, 2025
CVE-2025-20963 6.6

This vulnerability allows local attackers to write out-of-bounds memory in libsavsvc.so, potentially leading to memory corruption and privilege escala...

May 7, 2025
CVE-2025-20965 6.2

This vulnerability in Samsung's Bixby wakeup feature allows local attackers to bypass permission checks and access sensitive data. It affects Samsung ...

May 7, 2025
CVE-2025-20949 5.1

A path traversal vulnerability in Samsung Members app allows attackers to read and write arbitrary files with the app's privileges. This affects Samsu...

May 7, 2025
CVE-2025-20954 5.5

This vulnerability in Samsung's EnrichedCall feature allows local attackers to access sensitive information through improper use of implicit intents. ...

May 7, 2025
CVE-2025-20956 4.3

This vulnerability allows physical attackers to access developer settings on Galaxy Watch devices due to improper export of Android application compon...

May 7, 2025
CVE-2025-20957 7.3

This vulnerability allows local attackers to bypass access controls in Samsung's SmartManagerCN application, enabling them to launch arbitrary activit...

May 7, 2025
CVE-2025-20959 5.1

This vulnerability in Samsung's Wi-Fi P2P service allows local attackers to access sensitive information by exploiting implicit intents. It affects Sa...

May 7, 2025
CVE-2025-20952 5.5

This vulnerability in Mdecservice allows local attackers to bypass access controls and read arbitrary files with system-level privileges. It affects S...

Apr 9, 2025
CVE-2025-20947 5.5

This vulnerability in Samsung's ClipboardService allows local attackers to access image files across multiple user accounts on the same device. It req...

Apr 8, 2025
CVE-2025-20948 5.5

This vulnerability allows local privileged attackers to read out-of-bounds memory in Samsung's cdsp frame secfr trustlet during enrollment. It affects...

Apr 8, 2025
CVE-2025-20946 8.8

This vulnerability allows local attackers to pair with specific Bluetooth devices on Galaxy Watches without user interaction. It affects Galaxy Watch ...

Apr 8, 2025
CVE-2025-20951 5.1

This vulnerability in Galaxy Store allows local attackers to write arbitrary files with Galaxy Store's privileges due to improper intent verification ...

Apr 8, 2025
CVE-2025-20938 5.5

An improper access control vulnerability in SamsungContacts allows local attackers to bypass protection mechanisms and access sensitive contact data. ...

Apr 8, 2025
CVE-2025-20944 6.2

This vulnerability allows local attackers to read out-of-bounds memory in Samsung devices by exploiting an out-of-bounds read in the libsavsac.so libr...

Apr 8, 2025
CVE-2025-20942 4.4

This vulnerability allows local attackers to reset the OAID (Open Anonymous Device Identifier) on Samsung devices by exploiting improper intent verifi...

Apr 8, 2025
CVE-2025-20943 6.4

This vulnerability allows local privileged attackers to perform out-of-bounds writes in the secfr trustlet component, leading to memory corruption. It...

Apr 8, 2025
CVE-2025-20941 6.2

This vulnerability allows local attackers to access scancode data from specific input devices due to improper access control in InputManager. It affec...

Apr 8, 2025
CVE-2025-20936 8.8

This vulnerability allows local attackers with shell privileges to escalate to root privileges through improper access control in the HDCP trustlet co...

Apr 8, 2025
CVE-2025-2233 8.8

This vulnerability allows network-adjacent attackers to bypass authentication on Samsung SmartThings Hub devices by exploiting improper cryptographic ...

Mar 11, 2025
CVE-2024-50600 7.5

This vulnerability allows attackers to send malformed messages through the Wi-Fi driver to Samsung Exynos processors, causing out-of-bounds memory acc...

Mar 6, 2025
CVE-2024-52923 7.5

A boundary check vulnerability in Samsung's NRMM component for multiple Exynos processors allows denial of service attacks. Attackers can exploit this...

Mar 6, 2025
CVE-2024-52924 7.5

This vulnerability in Samsung Exynos processors allows attackers to execute arbitrary code by sending specially crafted Registration Accept messages. ...

Mar 6, 2025

Why Monitor Samsung Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 413+ known vulnerabilities affecting Samsung products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Samsung packages in under 60 seconds. No agents required - completely agentless scanning that works across Samsung deployments.

Free vulnerability database: Access detailed information about every Samsung CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Samsung CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Samsung CVEs Free