Samsung Security Vulnerabilities (CVEs)

Track 414 security vulnerabilities affecting Samsung products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

21 Critical
146 High
245 Medium
2 Low
🔔 Get Alerts for Samsung
CVE-2024-34595 7.8

This vulnerability allows local attackers to bypass access controls in Samsung's SystemUI component, enabling them to launch privileged activities wit...

Jul 2, 2024
CVE-2024-34597 4.4

This vulnerability allows local attackers to write arbitrary files to Samsung Health's sandbox through improper input validation. It requires user int...

Jul 2, 2024
CVE-2024-34600 4.4

This vulnerability in Samsung Flow allows local attackers to copy image files to external storage without proper authorization. It affects Samsung Flo...

Jul 2, 2024
CVE-2024-34589 5.3

This vulnerability allows remote attackers to cause temporary denial of service through improper input validation when parsing RTCP Receiver Report pa...

Jul 2, 2024
CVE-2024-34591 5.3

This vulnerability allows remote attackers to cause temporary denial of service through improper input validation when parsing RTCP SDES packet data i...

Jul 2, 2024
CVE-2024-34593 7.5

This vulnerability allows remote attackers to execute arbitrary code with system privileges on affected Samsung devices by sending specially crafted R...

Jul 2, 2024
CVE-2024-34585 7.8

This vulnerability allows local attackers to bypass access controls in Samsung's SystemUI component, enabling them to launch privileged activities wit...

Jul 2, 2024
CVE-2024-34587 7.5

This vulnerability allows remote attackers to execute arbitrary code with system privileges by sending specially crafted RTCP packets to affected Sams...

Jul 2, 2024
CVE-2024-20897 4.0

This vulnerability in Samsung's IMS service allows local attackers to access sensitive information through improper use of implicit intents in FCM fun...

Jul 2, 2024
CVE-2024-20899 4.0

This vulnerability in Samsung's IMS service allows local attackers to access sensitive information through improper use of implicit intents in RCS fun...

Jul 2, 2024
CVE-2024-20901 5.9

This vulnerability in libsaped allows local attackers to write out-of-bounds memory due to improper input validation when copying data to buffer cache...

Jul 2, 2024
CVE-2024-20891 7.8

This vulnerability allows local attackers to bypass access controls in Samsung's SystemUI component, enabling them to launch privileged activities wit...

Jul 2, 2024
CVE-2024-20893 6.1

This vulnerability allows local attackers to trigger memory corruption through improper input validation in Samsung's libmediaextractorservice.so libr...

Jul 2, 2024
CVE-2024-20895 7.7

This vulnerability allows local attackers to bypass access restrictions in Samsung's Dar service, enabling unauthorized calls to SDP features. It affe...

Jul 2, 2024
CVE-2024-20888 7.8

This vulnerability in Samsung's OneUIHome launcher allows local attackers to launch privileged activities without proper authorization. User interacti...

Jul 2, 2024
CVE-2024-20890 5.3

This vulnerability in Samsung devices' Bluetooth Low Energy (BLE) stack allows nearby attackers to send malformed BLE packets that trigger abnormal be...

Jul 2, 2024
CVE-2024-31956 8.4

This vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated memory boundaries due to insufficient buffer length ch...

Jun 13, 2024
CVE-2024-31959 8.4

This vulnerability in Samsung Exynos processors allows attackers to execute arbitrary code by exploiting improper validation of native handles. It aff...

Jun 7, 2024
CVE-2024-32503 8.4

A Use-After-Free vulnerability in Samsung Exynos mobile and wearable processors allows attackers to potentially execute arbitrary code or cause system...

Jun 7, 2024
CVE-2024-27378 6.0

A heap over-read vulnerability exists in Samsung Exynos mobile processors due to missing input validation in the slsi_send_action_frame_cert() functio...

Jun 5, 2024
CVE-2024-27380 6.0

This vulnerability in Samsung Exynos mobile processors allows attackers to read heap memory beyond allocated boundaries through a missing input valida...

Jun 5, 2024
CVE-2024-27382 6.0

This vulnerability in Samsung Exynos mobile processors allows attackers to read heap memory beyond allocated boundaries due to missing input validatio...

Jun 5, 2024
CVE-2024-27374 6.7

This vulnerability in Samsung Exynos mobile processors allows attackers to perform heap overwrite attacks by exploiting insufficient input validation ...

Jun 5, 2024
CVE-2024-27376 6.7

This vulnerability in Samsung Exynos mobile processors allows attackers to perform heap overwrite attacks by exploiting missing input validation in th...

Jun 5, 2024
CVE-2024-27370 6.7

This vulnerability in Samsung Exynos mobile processors allows attackers to overwrite heap memory by sending unvalidated input to the slsi_nan_config_g...

Jun 5, 2024
CVE-2024-27372 6.7

This vulnerability in Samsung Exynos mobile processors allows attackers to perform heap overwrite attacks by exploiting lack of input validation in th...

Jun 5, 2024
CVE-2023-49927 5.3

A vulnerability in Samsung Exynos baseband software allows improper format type checking in RRC (Radio Resource Control) messages, potentially leading...

Jun 5, 2024
CVE-2023-49928 7.5

This vulnerability in Samsung Exynos baseband software allows improper state checking in RRC (Radio Resource Control) protocols, potentially leading t...

Jun 5, 2024
CVE-2024-29152 5.9

A vulnerability in Samsung Exynos baseband software allows improper state checking of RRC Reconfiguration messages, potentially leading to sensitive i...

Jun 4, 2024
CVE-2024-20887 6.2

This vulnerability in GalaxyBudsManager PC software allows attackers to create arbitrary directories on the system. It affects users running GalaxyBud...

Jun 4, 2024
CVE-2024-20883 6.2

This vulnerability allows local attackers to misuse a privileged API in Samsung's BatteryStatsService. It affects Samsung devices running Android vers...

Jun 4, 2024
CVE-2024-20885 5.1

This vulnerability in Samsung Dialer allows local attackers to bypass permission checks and make phone calls without proper authorization. It affects ...

Jun 4, 2024
CVE-2024-20879 4.0

This vulnerability allows local attackers to write out-of-bounds memory in libsavscmn.so due to improper input validation. It affects Samsung mobile d...

Jun 4, 2024
CVE-2024-20881 6.4

This vulnerability allows local privileged attackers to execute arbitrary code on affected Samsung devices due to improper input validation in the chn...

Jun 4, 2024
CVE-2024-20876 6.1

This vulnerability in Samsung's libsheifdecadapter.so library allows local attackers to trigger memory corruption through improper input validation. I...

Jun 4, 2024
CVE-2024-20877 7.3

This vulnerability allows local attackers to execute arbitrary code on affected Samsung devices by exploiting a heap out-of-bounds write in the libsav...

Jun 4, 2024
CVE-2024-20874 7.9

This vulnerability allows local attackers to bypass access controls in Samsung's SmartManagerCN application, enabling them to perform privileged activ...

Jun 4, 2024
CVE-2024-31953 6.7

This vulnerability allows local attackers with existing user privileges to escalate to administrator privileges through arbitrary code execution durin...

May 14, 2024
CVE-2024-20868 4.4

This vulnerability in Samsung Notes allows local attackers to delete files with Samsung Notes application privileges under certain conditions. It affe...

May 7, 2024
CVE-2024-20870 5.1

This vulnerability in Galaxy Store allows local attackers to write arbitrary files with Galaxy Store's privileges due to improper intent verification ...

May 7, 2024
CVE-2024-20872 6.2

This vulnerability allows local attackers with insufficient privileges to modify TalkbackSE settings on Samsung Android devices. It affects Samsung de...

May 7, 2024
CVE-2024-20862 6.0

This vulnerability is an out-of-bounds write in SveService on Samsung devices that allows local privileged attackers to execute arbitrary code. It aff...

May 7, 2024
CVE-2024-20864 5.5

This vulnerability allows local attackers to monitor system resources through improper access control in DarManagerService on Samsung devices. It affe...

May 7, 2024
CVE-2024-20866 5.7

This CVE describes an authentication bypass vulnerability in Samsung's Setupwizard that allows physical attackers to skip the device activation step d...

May 7, 2024
CVE-2024-20856 4.3

This vulnerability allows physical attackers to bypass authentication and access Samsung Secure Folder in specific scenarios. It affects Samsung devic...

May 7, 2024
CVE-2024-20858 4.0

This vulnerability allows local attackers to bypass access controls in Samsung's CocktailBarService, enabling unauthorized access to information about...

May 7, 2024
CVE-2024-20860 4.0

This vulnerability in Samsung's TelephonyUI component allows local attackers to reboot Android devices without proper permissions. It affects Samsung ...

May 7, 2024
CVE-2024-20849 7.3

This CVE describes an out-of-bounds write vulnerability in the chunk parsing implementation of libsdffextractor library on Samsung devices. It allows ...

Apr 2, 2024
CVE-2024-20844 8.4

This is an out-of-bounds write vulnerability in Samsung's libsavsac.so library that allows a local attacker to execute arbitrary code with elevated pr...

Apr 2, 2024
CVE-2024-20812 8.4

This vulnerability is an out-of-bounds write in the padmd_vld_htbl function of libpadm.so on Samsung devices, allowing a local attacker to execute arb...

Feb 6, 2024

Why Monitor Samsung Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 414+ known vulnerabilities affecting Samsung products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Samsung packages in under 60 seconds. No agents required - completely agentless scanning that works across Samsung deployments.

Free vulnerability database: Access detailed information about every Samsung CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Samsung CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Samsung CVEs Free