VendorsSamsungandroidany version
Vulnerabilities

Samsung Android 9.0 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2023-42566
Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrary code.
Published 2023-12-05 · Modified
7.8EPSS 0.003
CVE-2023-42560
Heap out-of-bounds write vulnerability in dec_mono_audb of libsavsac.so prior to SMR Dec-2023 Release 1 allows an attacker to execute arbitrary code.
Published 2023-12-05 · Modified
7.8EPSS 0.002
CVE-2023-42563
Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.
Published 2023-12-05 · Modified
7.8EPSS 0.002
CVE-2023-42562
Integer overflow vulnerability in detectionFindFaceSupportMultiInstance of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.
Published 2023-12-05 · Modified
7.8EPSS 0.002
CVE-2025-21006
Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 allows local attackers to write out-of-bounds memory.
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2023-42565
Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell privilege to execute arbitrary code.
Published 2023-12-05 · Modified
7.3EPSS 0.002
CVE-2023-42568
Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.
Published 2023-12-05 · Modified
7.3EPSS 0.002
CVE-2023-42561
Heap out-of-bounds write vulnerability in bootloader prior to SMR Dec-2023 Release 1 allows a physical attacker to execute arbitrary code.
Published 2023-12-05 · Modified
7.1EPSS 0.004
CVE-2023-42557
Out-of-bound write vulnerability in libIfaaCa prior to SMR Dec-2023 Release 1 allows local system attackers to execute arbitrary code.
Published 2023-12-05 · Modified
6.7EPSS 0.003
CVE-2023-42564
Improper access control in knoxcustom service prior to SMR Dec-2023 Release 1 allows attacker to send broadcast with system privilege.
Published 2023-12-05 · Modified
6.6EPSS 0.002
CVE-2025-21041
Insecure Storage of Sensitive Information in Secure Folder prior to Android 16 allows local attackers to access sensitive information.
Published 2025-09-03 · Analyzed
6.2EPSS 0.001
CVE-2023-42570
Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to access device SIM PIN.
Published 2023-12-05 · Modified
5.9EPSS 0.002
CVE-2023-42556
Improper usage of implicit intent in Contacts prior to SMR Dec-2023 Release 1 allows attacker to get sensitive information.
Published 2023-12-05 · Modified
5.5EPSS 0.002
CVE-2025-20934
Improper access control in Sticker Center prior to SMR Apr-2025 Release 1 allows local attackers to access image files with system privilege.
Published 2025-04-08 · Analyzed
5.5EPSS 0.001
CVE-2025-21007
Out-of-bounds write in accessing uninitialized memory in libsavsvc.so prior to Android 15 allows local attackers to cause memory corruption.
Published 2025-07-08 · Analyzed
5.5EPSS 0.001
CVE-2025-21008
Out-of-bounds read in decoding frame header in libsavsvc.so prior to Android 15 allows local attackers to cause memory corruption.
Published 2025-07-08 · Analyzed
5.5EPSS 0.001
CVE-2025-21009
Out-of-bounds read in decoding malformed frame header in libsavsvc.so prior to Android 15 allows local attackers to cause memory corruption.
Published 2025-07-08 · Analyzed
5.5EPSS 0.001
CVE-2025-21005
Improper access control in isemtelephony prior to Android 15 allows local attackers to access sensitive information.
Published 2025-07-08 · Analyzed
5.5EPSS 0.001
CVE-2026-21112
Improper input validation in Samsung Tips prior to Android 17 allows local attackers to launch arbitrary activity with Samsung Tips privilege. User interaction is required for triggering this vulnerability.
Published 2026-09-09 · Analyzed
5.5EPSS 0.001
CVE-2023-42559
Improper exception management vulnerability in Knox Guard prior to SMR Dec-2023 Release 1 allows Knox Guard lock bypass via changing system time.
Published 2023-12-05 · Modified
5.2EPSS 0.003
CVE-2023-42569
Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.
Published 2023-12-05 · Modified
4.0EPSS 0.002