Samsung Security Vulnerabilities (CVEs)

Track 414 security vulnerabilities affecting Samsung products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

21 Critical
146 High
245 Medium
2 Low
🔔 Get Alerts for Samsung
CVE-2025-20930 5.5

This vulnerability allows local attackers to read out-of-bounds memory in Samsung Notes when parsing JPEG images. Attackers could potentially access s...

Mar 6, 2025
CVE-2025-20931 7.3

This vulnerability allows local attackers to execute arbitrary code by exploiting an out-of-bounds write when parsing BMP images in Samsung Notes. Att...

Mar 6, 2025
CVE-2025-20932 5.5

This vulnerability allows local attackers to read out-of-bounds memory when parsing RLE-compressed BMP images in Samsung Notes. It affects Samsung Not...

Mar 6, 2025
CVE-2025-20926 5.5

This vulnerability in Samsung's My Files app on Android 14 allows local attackers to improperly access files with the app's elevated privileges. It af...

Mar 6, 2025
CVE-2025-20928 5.5

This vulnerability allows local attackers to read memory outside the intended buffer when Samsung Notes parses WBMP image files. Attackers could poten...

Mar 6, 2025
CVE-2025-20929 7.3

This vulnerability allows local attackers to execute arbitrary code by exploiting an out-of-bounds write when parsing JPEG images in Samsung Notes. At...

Mar 6, 2025
CVE-2025-20920 5.5

An out-of-bounds read vulnerability in Samsung Notes' action link data handling allows attackers to read memory beyond allocated boundaries. This affe...

Mar 6, 2025
CVE-2025-20922 5.5

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond intended boundaries when appending text paragraphs. This a...

Mar 6, 2025
CVE-2025-20924 4.6

A physical access control vulnerability in Samsung Notes allows attackers with physical device access to bypass user profile isolation and access data...

Mar 6, 2025
CVE-2025-20914 5.5

An out-of-bounds read vulnerability in Samsung Notes' handwriting content processing allows attackers to read memory beyond allocated boundaries. This...

Mar 6, 2025
CVE-2025-20916 5.5

An out-of-bounds read vulnerability in Samsung Notes' SPen string reading functionality allows attackers to access memory beyond intended boundaries. ...

Mar 6, 2025
CVE-2025-20918 5.5

An out-of-bounds read vulnerability in Samsung Notes allows attackers to read memory beyond allocated boundaries when processing extra data in base co...

Mar 6, 2025
CVE-2025-20908 6.5

This vulnerability in Samsung's Auracast feature allows nearby attackers to access Auracast broadcasting due to insufficiently random values. It affec...

Mar 6, 2025
CVE-2025-20910 6.2

This vulnerability allows local attackers to access Galaxy Watch Gallery data due to incorrect default permissions. It affects Samsung Galaxy Watch de...

Mar 6, 2025
CVE-2025-20912 6.2

An incorrect default permission vulnerability in DiagMonAgent on Samsung Galaxy Watch devices allows local attackers to access sensitive data. This af...

Mar 6, 2025
CVE-2025-20903 7.3

This vulnerability allows local attackers to bypass access controls in Samsung's SecSettingsIntelligence component, enabling them to launch privileged...

Mar 6, 2025
CVE-2024-46922 7.5

A null pointer dereference vulnerability in Samsung Exynos 1480 and 2400 mobile processors' Xclipse GPU driver allows attackers to cause denial of ser...

Feb 12, 2025
CVE-2024-46923 7.5

A missing null pointer check in the Xclipse GPU driver for Samsung Exynos mobile processors allows attackers to cause denial of service. This affects ...

Feb 12, 2025
CVE-2025-20905 6.3

This vulnerability allows local privileged attackers to read and write out-of-bounds memory in Samsung mPOS TUI trustlet software. It affects Samsung ...

Feb 4, 2025
CVE-2025-20907 6.0

This vulnerability allows local privileged attackers to disable Samsung Find functionality on affected Samsung devices. It involves improper privilege...

Feb 4, 2025
CVE-2025-20898 4.6

This vulnerability in Samsung Members app allows physical attackers to bypass user profile isolation and access data from other user profiles on the s...

Feb 4, 2025
CVE-2025-20900 6.3

An out-of-bounds write vulnerability in Blockchain Keystore allows local privileged attackers to write to memory beyond allocated bounds. This affects...

Feb 4, 2025
CVE-2025-20890 7.0

This vulnerability allows local attackers to execute arbitrary code with elevated privileges on Samsung devices by exploiting an out-of-bounds write i...

Feb 4, 2025
CVE-2025-20891 5.3

This vulnerability allows local attackers to read arbitrary memory by exploiting an out-of-bounds read in the libsthmbc.so library when processing mal...

Feb 4, 2025
CVE-2025-20893 5.1

An improper access control vulnerability in Samsung's NotificationManager allows local attackers to modify notification configurations without proper ...

Feb 4, 2025
CVE-2025-20896 4.0

This vulnerability in Samsung's EasySetup allows local attackers to access sensitive information due to improper use of implicit intents. It affects S...

Feb 4, 2025
CVE-2025-20882 7.0

This vulnerability allows local attackers to execute arbitrary code with elevated privileges on affected Samsung devices by exploiting an out-of-bound...

Feb 4, 2025
CVE-2025-20883 4.6

This vulnerability allows physical attackers to bypass access controls in Samsung's SoundPicker component, enabling unauthorized access to data across...

Feb 4, 2025
CVE-2025-20885 6.4

This vulnerability allows local privileged attackers to perform out-of-bounds writes in the softsim trustlet, leading to memory corruption. It affects...

Feb 4, 2025
CVE-2025-20887 5.3

This vulnerability allows local attackers to read arbitrary memory through an out-of-bounds read in the svp8t table handling of libsthmbc.so library. ...

Feb 4, 2025
CVE-2025-20888 7.0

This vulnerability allows local attackers to execute arbitrary code with elevated privileges on affected Samsung devices by exploiting an out-of-bound...

Feb 4, 2025
CVE-2025-20889 5.3

This vulnerability allows local attackers to read arbitrary memory by exploiting an out-of-bounds read in the smp4vtd bitstream decoder in libsthmbc.s...

Feb 4, 2025
CVE-2025-20881 7.0

This vulnerability is an out-of-bounds write in libsthmbc.so video decoding library that allows local attackers to execute arbitrary code with elevate...

Feb 4, 2025
CVE-2024-48883 4.3

This vulnerability in Samsung Exynos processors allows information leakage when a malformed uplink scheduling message is incorrectly handled. It affec...

Jan 13, 2025
CVE-2024-49421 4.3

This CVE describes a path traversal vulnerability in Samsung's Quick Share Agent on Android devices. It allows adjacent attackers (on the same network...

Dec 3, 2024
CVE-2024-49411 4.3

This path traversal vulnerability in Samsung's ThemeCenter allows physical attackers with device access to copy APK files to arbitrary locations using...

Dec 3, 2024
CVE-2024-49413 7.1

This vulnerability allows local attackers to bypass cryptographic signature verification in Samsung SmartSwitch, enabling installation of malicious ap...

Dec 3, 2024
CVE-2024-49415 8.1

This vulnerability allows remote attackers to execute arbitrary code on affected Samsung devices due to an out-of-bounds write in libsaped.so. It affe...

Dec 3, 2024
CVE-2024-49416 4.0

This vulnerability in Samsung SmartThings allows local attackers to access sensitive information through improper use of implicit intents. It affects ...

Dec 3, 2024
CVE-2024-39890 8.1

A memory corruption vulnerability in Samsung Exynos baseband software allows attackers to write data beyond allocated buffer boundaries by exploiting ...

Dec 2, 2024
CVE-2024-39343 7.0

A vulnerability in Samsung Exynos baseband software allows denial of service attacks by exploiting improper length validation in the Mobility Manageme...

Dec 2, 2024
CVE-2024-49409 6.4

An out-of-bounds write vulnerability in the Battery Full Capacity node on Samsung Galaxy S24 devices allows local attackers with system privilege to w...

Nov 6, 2024
CVE-2024-49403 4.6

This vulnerability allows physical attackers to access voice recording files from Samsung Voice Recorder while the device is on the lock screen. It af...

Nov 6, 2024
CVE-2024-49405 5.3

This vulnerability in Samsung Pass allows physical attackers to bypass authentication and access sensitive information stored in the Private Info feat...

Nov 6, 2024
CVE-2024-49407 4.6

An improper access control vulnerability in Samsung Flow allows physical attackers to access data across multiple user profiles on the same device. Th...

Nov 6, 2024
CVE-2024-34678 5.9

This vulnerability is an out-of-bounds write in libsapeextractor.so that allows local attackers to cause memory corruption. It affects Samsung devices...

Nov 6, 2024
CVE-2024-34680 4.0

This vulnerability in WlanTest allows local attackers to access sensitive information through improper use of implicit intents. It affects Samsung mob...

Nov 6, 2024
CVE-2024-49401 5.1

This vulnerability allows local attackers to bypass input validation in Settings Suggestions on Samsung devices, enabling them to launch privileged ac...

Nov 6, 2024
CVE-2024-34673 4.1

This vulnerability allows local attackers to cause a Denial-of-Service (DoS) condition in Samsung mobile devices by exploiting improper input validati...

Nov 6, 2024
CVE-2024-34676 4.4

An out-of-bounds write vulnerability in libsubextractor.so subtitle parsing library allows local attackers to cause memory corruption when processing ...

Nov 6, 2024

Why Monitor Samsung Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 414+ known vulnerabilities affecting Samsung products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Samsung packages in under 60 seconds. No agents required - completely agentless scanning that works across Samsung deployments.

Free vulnerability database: Access detailed information about every Samsung CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Samsung CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Samsung CVEs Free