<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Samsung Mobile (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/samsung-mobile.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/samsung-mobile-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Samsung Mobile (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:52 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2025-66369 – An issue was discovered in MM in Samsung Mobile Processor, Wearable Processor, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66369</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66369</guid>
    <pubDate>Tue, 05 May 2026 16:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66369</strong></p>
  <p>An issue was discovered in MM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, W920, W930, W1000, Modem 5123, and Modem 5300. Incorrect handling of 5G NR NAS registration accept messages leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66369">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-52908 – An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wear...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52908</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52908</guid>
    <pubDate>Tue, 07 Apr 2026 16:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-52908</strong></p>
  <p>An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Incorrect Handling of the NL80211 vendor command leads to a buffer overflow via a certain ioctl message, issue 1 of 2.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52908">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-62818 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62818</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62818</guid>
    <pubDate>Tue, 07 Apr 2026 15:17:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-62818</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. An out-of-bounds write occurs due to a mismatch between the TP-UDHI and UDL values when processing an SMS TP-UD packet.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62818">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-52909 – An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wear...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52909</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52909</guid>
    <pubDate>Tue, 07 Apr 2026 15:17:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-52909</strong></p>
  <p>An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Incorrect Handling of the NL80211 vendor command leads to a buffer overflow via a certain ioctl message, issue 2 of 2.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52909">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54601 – An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor amd Wear...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54601</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54601</guid>
    <pubDate>Mon, 06 Apr 2026 21:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54601</strong></p>
  <p>An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor amd Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Improper synchronization on a global variable leads to a double free. An attacker can trigger a race condition by invoking an ioctl function concurrently from multiple threads.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54601">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-57834 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-57834</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-57834</guid>
    <pubDate>Mon, 06 Apr 2026 20:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-57834</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem (Exynos 980, 850, 990, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, 9110, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400, and Modem 5410). The absence of proper input validation leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-57834">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54602 – An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wear...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54602</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54602</guid>
    <pubDate>Mon, 06 Apr 2026 20:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54602</strong></p>
  <p>An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Improper synchronization on a global variable leads to a use-after-free. An attacker can trigger a race condition by invoking an ioctl function concurrently from multiple threads.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54602">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-54328 – An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54328</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54328</guid>
    <pubDate>Mon, 06 Apr 2026 20:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-54328</strong></p>
  <p>An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. A Stack-based Buffer Overflow occurs while parsing SMS RP-DATA messages.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54328">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-58349 – An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58349</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58349</guid>
    <pubDate>Mon, 06 Apr 2026 19:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-58349</strong></p>
  <p>An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Incorrect handling of LTE MAC packets containing many MAC Control Elements (CEs) leads to baseband crashes.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58349">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54324 – An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54324</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54324</guid>
    <pubDate>Mon, 06 Apr 2026 19:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54324</strong></p>
  <p>An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Incorrect Handling of a DL NAS Transport packet leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54324">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59440 – An issue was discovered in USIM in Samsung Mobile Processor, Wearable Processor,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59440</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59440</guid>
    <pubDate>Mon, 06 Apr 2026 18:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59440</strong></p>
  <p>An issue was discovered in USIM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Improper handling of SIM card proactive commands leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59440">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-57835 – An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-57835</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-57835</guid>
    <pubDate>Mon, 06 Apr 2026 18:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-57835</strong></p>
  <p>An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Improper memory initialization results in an illegal memory access, causing a system crash via a malformed RRCReconfiguration message.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-57835">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62817 – An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 148...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62817</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62817</guid>
    <pubDate>Tue, 03 Mar 2026 17:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62817</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of session->ncp_hdr_buf in __pilot_parsing_ncp() causes a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62817">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66363 – An issue was discovered in LBS in Samsung Mobile Processor Exynos 2200. There wa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66363</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66363</guid>
    <pubDate>Tue, 03 Mar 2026 16:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66363</strong></p>
  <p>An issue was discovered in LBS in Samsung Mobile Processor Exynos 2200. There was no check for memory initialization within DL NAS Transport messages.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-665</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66363">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62814 – An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 148...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62814</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62814</guid>
    <pubDate>Tue, 03 Mar 2026 16:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62814</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL pointer dereference of ft_handle in load_fw_utc_vector() causes a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62814">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-58107 – In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58107</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58107</guid>
    <pubDate>Mon, 02 Mar 2026 15:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58107</strong></p>
  <p>In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58107">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59439 – An issue was discovered in Samsung Mobile Processor, Wearable Processor and Mode...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59439</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59439</guid>
    <pubDate>Tue, 03 Feb 2026 18:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59439</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor and Modem Exynos 980, 990, 850, 1080, 9110, W920, W930, W1000 and Modem 5123. Incorrect handling of NAS Registration messages leads to a Denial of Service because of Improper Handling of Exceptional Conditions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59439">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53966 – An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53966</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53966</guid>
    <pubDate>Mon, 05 Jan 2026 19:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53966</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580. Incorrect Handling of the NL80211 vendor command leads to a buffer overflow during handling of an IOCTL message.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53966">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49495 – An issue was discovered in the WiFi driver in Samsung Mobile Processor Exynos 13...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49495</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49495</guid>
    <pubDate>Mon, 05 Jan 2026 19:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49495</strong></p>
  <p>An issue was discovered in the WiFi driver in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580. Mishandling of an NL80211 vendor command leads to a buffer overflow.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49495">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-43706 – An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-43706</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-43706</guid>
    <pubDate>Mon, 05 Jan 2026 19:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-43706</strong></p>
  <p>An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2400, 1580, 9110, W920, W930, Modem 5123, and Modem 5400. Incorrect handling of RRC packets leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-43706">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-27807 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27807</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27807</guid>
    <pubDate>Mon, 05 Jan 2026 19:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-27807</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 9110, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds writes via malformed NAS packets.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27807">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-52519 – An issue was discovered in the Camera in Samsung Mobile Processor and Wearable P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52519</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52519</guid>
    <pubDate>Mon, 05 Jan 2026 17:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-52519</strong></p>
  <p>An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, and 2500. Improper validation of user-space input in the issimian device driver leads to information disclosure and a denial of service.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52519">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54326 – An issue was discovered in Camera in Samsung Mobile Processor Exynos 1280 and 22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54326</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54326</guid>
    <pubDate>Wed, 03 Dec 2025 17:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54326</strong></p>
  <p>An issue was discovered in Camera in Samsung Mobile Processor Exynos 1280 and 2200. Unnecessary registration of a hardware IP address in the Camera device driver can lead to a NULL pointer dereference, resulting in a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54326">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-52910 – An issue was discovered in the GPU in Samsung Mobile Processor and Wearable Proc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52910</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52910</guid>
    <pubDate>Tue, 04 Nov 2025 21:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-52910</strong></p>
  <p>An issue was discovered in the GPU in Samsung Mobile Processor and Wearable Processor Exynos 1280, 2200, 1330, 1380, 1480, 2400. A Use-After-Free leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52910">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-56426 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-56426</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-56426</guid>
    <pubDate>Tue, 04 Nov 2025 21:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-56426</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000. The lack of a length check leads to out-of-bounds writes via malformed USB packets to the target.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-56426">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49494 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49494</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49494</guid>
    <pubDate>Tue, 04 Nov 2025 20:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49494</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 2100, 1280, 2200, 1330, 1380, 1480, 9110, Modem 5123. Mishandling of an 5G NRMM packet leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49494">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54334 – An issue was discovered in the NPU driver in Samsung Mobile Processor Exynos 128...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54334</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54334</guid>
    <pubDate>Tue, 04 Nov 2025 19:17:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54334</strong></p>
  <p>An issue was discovered in the NPU driver in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500. There is a NULL Pointer Dereference of hdev in the __npu_vertex_bootup function.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54334">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-52513 – An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52513</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52513</guid>
    <pubDate>Tue, 04 Nov 2025 19:17:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-52513</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A race condition in the HTS driver results in an out-of-bounds write, leading to a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52513">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-52512 – An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52512</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52512</guid>
    <pubDate>Tue, 04 Nov 2025 19:17:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-52512</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A race condition in the HTS driver results in out-of-bounds memory access, leading to a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52512">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54332 – An issue was discovered in NPU in Samsung Mobile Processor Exynos 1380 through J...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54332</guid>
    <pubDate>Tue, 04 Nov 2025 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54332</strong></p>
  <p>An issue was discovered in NPU in Samsung Mobile Processor Exynos 1380 through July 2025. There is a NULL Pointer Dereference of profiler.node in the npu_vertex_profileoff function.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54329 – An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54329</guid>
    <pubDate>Tue, 04 Nov 2025 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54329</strong></p>
  <p>An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. The function used to send a multiple-payloads message (including an SMS message) lacks bounds checking, which can lead to a heap overflow.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54323 – An issue was discovered in the camera in Samsung Mobile Processor Exynos 980, 99...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54323</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54323</guid>
    <pubDate>Tue, 04 Nov 2025 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54323</strong></p>
  <p>An issue was discovered in the camera in Samsung Mobile Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, and 1580. Improper debug printing leads to information leakage.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54323">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26782 – An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26782</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26782</guid>
    <pubDate>Mon, 20 Oct 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26782</strong></p>
  <p>An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 9110, W920, W930, Modem 5123, and Modem 5300. Incorrect handling of RLC AM PDUs leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26782">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26781 – An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26781</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26781</guid>
    <pubDate>Mon, 20 Oct 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26781</strong></p>
  <p>An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 9110, W920, W930, Modem 5123, and Modem 5300. Incorrect handling of RLC AM PDUs leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26781">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-55568 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-55568</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-55568</guid>
    <pubDate>Mon, 20 Oct 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-55568</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The absence of a NULL check leads to a Denial of Service when an attacker sends malformed MM packets to the target.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-55568">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-47202 – In RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 99...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47202</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-47202</strong></p>
  <p>In RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400, the lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26780 – An issue was discovered in L2 in Samsung Mobile Processor and Modem Exynos 2400 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26780</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26780</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26780</strong></p>
  <p>An issue was discovered in L2 in Samsung Mobile Processor and Modem Exynos 2400 and Modem 5400. The lack of a length check leads to a Denial of Service via a malformed PDCP packet.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26780">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23100 – An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 148...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23100</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23100</guid>
    <pubDate>Tue, 03 Jun 2025 20:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23100</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. The absence of a NULL check leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23100">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23098 – An issue was discovered in Samsung Mobile Processor Exynos 980, 990, 1080, 2100,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23098</guid>
    <pubDate>Tue, 03 Jun 2025 20:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23098</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 980, 990, 1080, 2100, 1280, 2200, 1380. A Use-After-Free in the mobile processor leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-23097 – An issue was discovered in Samsung Mobile Processor Exynos 1380. The lack of a l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23097</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23097</guid>
    <pubDate>Tue, 03 Jun 2025 20:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-23097</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1380. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23097">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23102 – An issue was discovered in Samsung Mobile Processor Exynos 980, 990, 1080, 2100,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23102</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23102</guid>
    <pubDate>Tue, 03 Jun 2025 19:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23102</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 980, 990, 1080, 2100, 1280, 2200, 1380, 1480 and 2400. A Double Free in the mobile processor leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23102">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23107 – An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The la...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23107</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23107</guid>
    <pubDate>Tue, 03 Jun 2025 17:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23107</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23107">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23103 – An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The la...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23103</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23103</guid>
    <pubDate>Tue, 03 Jun 2025 16:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23103</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23103">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23105 – An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23105</guid>
    <pubDate>Mon, 02 Jun 2025 19:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23105</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. A Use-After-Free in the mobile processor leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-23099 – An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The la...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23099</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23099</guid>
    <pubDate>Mon, 02 Jun 2025 19:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-23099</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23099">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49196 – An issue was discovered in the GPU in Samsung Mobile Processor Exynos 1480 and 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49196</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49196</guid>
    <pubDate>Tue, 27 May 2025 17:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49196</strong></p>
  <p>An issue was discovered in the GPU in Samsung Mobile Processor Exynos 1480 and 2400. Type confusion leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-843</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49196">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-27891 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27891</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27891</guid>
    <pubDate>Wed, 14 May 2025 21:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-27891</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds reads via malformed NAS packets.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27891">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26783 – An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26783</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26783</guid>
    <pubDate>Wed, 14 May 2025 21:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26783</strong></p>
  <p>An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 2100, 1280, 2200, 1330, 1380, 1480, 2400, W1000, Modem 5300, and Modem 5400. Incorrect handling of undefined values leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26783">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-55569 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-55569</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-55569</guid>
    <pubDate>Wed, 14 May 2025 21:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-55569</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-55569">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26785 – An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26785</guid>
    <pubDate>Wed, 14 May 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26785</strong></p>
  <p>An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds writes.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-50600 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-50600</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-50600</guid>
    <pubDate>Thu, 06 Mar 2025 19:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-50600</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, W920, W930, and W1000. Lack of a boundary check in STOP_KEEP_ALIVE_OFFLOAD leads to out-of-bounds access. An attacker can send a malformed message to the target through the Wi-Fi driver.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-50600">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-52924 – An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52924</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52924</guid>
    <pubDate>Thu, 06 Mar 2025 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-52924</strong></p>
  <p>An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Lack of boundary check during the decoding of Registration Accept messages can lead to out-of-bounds writes on the stack</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52924">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-52923 – An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52923</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52923</guid>
    <pubDate>Thu, 06 Mar 2025 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-52923</strong></p>
  <p>An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Lack of a boundary check during the decoding of DL NAS Transport messages leads to a Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52923">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-46923 – An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-46923</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-46923</guid>
    <pubDate>Wed, 12 Feb 2025 22:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-46923</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. The absence of a null check leads to a Denial of Service at amdgpu_cs_ib_fill in the Xclipse Driver.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-46923">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-46922 – An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The ab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-46922</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-46922</guid>
    <pubDate>Wed, 12 Feb 2025 22:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-46922</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The absence of a null check leads to a Denial of Service at amdgpu_cs_parser_bos in the Xclipse Driver.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-46922">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-39890 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39890</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39890</guid>
    <pubDate>Mon, 02 Dec 2024 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-39890</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300. The baseband software does not properly check the length specified by the CC (Call Control). This can lead to an Out-of-Bounds write.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39890">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-39343 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39343</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39343</guid>
    <pubDate>Mon, 02 Dec 2024 20:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-39343</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, Modem 5123, and Modem 5300. The baseband software does not properly check the length specified by the MM (Mobility Management) module, which can lead to Denial of Service.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39343">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-44068 – An issue was discovered in the m2m scaler driver in Samsung Mobile Processor and...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-44068</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-44068</guid>
    <pubDate>Mon, 07 Oct 2024 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-44068</strong></p>
  <p>An issue was discovered in the m2m scaler driver in Samsung Mobile Processor and Wearable Processor Exynos 9820, 9825, 980, 990, 850,and W920. A Use-After-Free in the mobile processor leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-44068">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-31960 – An issue was discovered in Samsung Mobile Processor Exynos 1480, Exynos 2400. Th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31960</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31960</guid>
    <pubDate>Tue, 10 Sep 2024 16:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-31960</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 1480, Exynos 2400. The xclipse amdgpu driver has a reference count bug. This can lead to a use after free.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31960">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-29153 – A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-29153</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-29153</guid>
    <pubDate>Tue, 09 Jul 2024 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-29153</strong></p>
  <p>A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, and Exynos Modem 5300 that involves incorrect authorization of LTE NAS messages and leads to dow…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-29153">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-50806 – A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50806</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50806</guid>
    <pubDate>Tue, 09 Jul 2024 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-50806</strong></p>
  <p>A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850 Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380 Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, Exynos Modem 5300 that allows out-of-bounds access to a heap buffer in the SIM Proactive Command.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50806">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-50805 – A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50805</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50805</guid>
    <pubDate>Tue, 09 Jul 2024 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-50805</strong></p>
  <p>A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, Exynos Modem 5300 that allows an out-of-bounds write in the heap in 2G (no auth).</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50805">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-32504 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32504</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32504</guid>
    <pubDate>Thu, 13 Jun 2024 17:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-32504</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper length checking, which can result in an OOB (Out-of-Bounds) Write vulnerability.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32504">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-31956 – An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Ex...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31956</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31956</guid>
    <pubDate>Thu, 13 Jun 2024 17:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-31956</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Exynos 2400. It lacks proper buffer length checking, which can result in an Out-of-Bounds Write.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31956">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-32502 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32502</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32502</guid>
    <pubDate>Fri, 07 Jun 2024 17:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-32502</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper reference count checking, which can result in a UAF (Use-After-Free) vulnerability.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32502">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-31959 – An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Ex...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31959</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31959</guid>
    <pubDate>Fri, 07 Jun 2024 17:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-31959</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Exynos 2400. It lacks a check for the validation of native handles, which can result in code execution.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31959">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-32503 – An issue was discovered in Samsung Mobile Processor and Wearable Processor Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32503</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32503</guid>
    <pubDate>Fri, 07 Jun 2024 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-32503</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper memory deallocation checking, which can result in a UAF (Use-After-Free) vulnerability.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32503">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-49928 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-49928</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-49928</guid>
    <pubDate>Wed, 05 Jun 2024 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-49928</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check states specified by the RRC. This can lead to disclosure of sensitive information.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-49928">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-41112 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41112</guid>
    <pubDate>Wed, 08 Nov 2023 08:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-41112</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123). A buffer copy, without checking the size of the input, can cause abnormal termination of a mobile phone. This occurs in the RLC task and RLC module.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-41111 – An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41111</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41111</guid>
    <pubDate>Wed, 08 Nov 2023 08:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-41111</strong></p>
  <p>An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123). Improper handling of a length parameter inconsistency can cause abnormal termination of a mobile phone. This occurs in the RLC task and RLC module.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41111">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-26076 – An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26076</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26076</guid>
    <pubDate>Mon, 13 Mar 2023 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-26076</strong></p>
  <p>An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G SM message codec can occur due to insufficient parameter validation when decoding reserved options.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26076">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-26073 – An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26073</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26073</guid>
    <pubDate>Mon, 13 Mar 2023 14:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-26073</strong></p>
  <p>An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the extended emergency number list.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26073">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-26074 – An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26074</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26074</guid>
    <pubDate>Mon, 13 Mar 2023 13:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-26074</strong></p>
  <p>An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding operator-defined access category definitions.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26074">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-26072 – An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26072</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26072</guid>
    <pubDate>Mon, 13 Mar 2023 12:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-26072</strong></p>
  <p>An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the Emergency number list.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26072">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-26075 – An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26075</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26075</guid>
    <pubDate>Fri, 10 Mar 2023 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-26075</strong></p>
  <p>An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding the Service Area List.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26075">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-22492 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-22492</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-22492</guid>
    <pubDate>Tue, 05 Jan 2021 18:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-22492</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Broadcom Bluetooth chipsets) software. The Bluetooth UART driver has a buffer overflow. The Samsung ID is SVE-2020-18731 (January 2021).</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-22492">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35553 – An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Qual...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35553</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35553</guid>
    <pubDate>Fri, 18 Dec 2020 09:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35553</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Qualcomm SM8250 chipsets) software. They allows attackers to cause a denial of service (unlock failure) by triggering a power-shortage incident that causes a false-positive attack detection. The Samsung ID is SVE-2020-19678 (December 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-920</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35553">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-35551 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35551</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35551</guid>
    <pubDate>Fri, 18 Dec 2020 09:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-35551</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. They allow attackers to conduct RPMB state-change attacks because an unauthorized RPMB write operation can be replayed, a related issue to CVE-2020-13799. The Samsung ID is SVE-2020-18100 (December 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-294</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35551">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-35550 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35550</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35550</guid>
    <pubDate>Fri, 18 Dec 2020 09:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-35550</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (FRP) via StatusBar. The Samsung ID is SVE-2020-17888 (December 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35550">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-28343 – An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exyno...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-28343</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-28343</guid>
    <pubDate>Sun, 08 Nov 2020 05:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-28343</strong></p>
  <p>An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 980, 9820, and 9830 chipsets) software. The NPU driver allows attackers to execute arbitrary code because of unintended write and read operations on memory. The Samsung ID is SVE-2020-18610 (November 2020).</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-28343">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-28342 – An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (China...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-28342</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-28342</guid>
    <pubDate>Sun, 08 Nov 2020 05:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-28342</strong></p>
  <p>An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (China / India) software. The S Secure application allows attackers to bypass authentication for a locked Gallery application via the Reminder application. The Samsung ID is SVE-2020-18689 (November 2020).</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-28342">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-28341 – An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos990 chipse...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-28341</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-28341</guid>
    <pubDate>Sun, 08 Nov 2020 05:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-28341</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos990 chipsets) software. The S3K250AF Secure Element CC EAL 5+ chip allows attackers to execute arbitrary code and obtain sensitive information via a buffer overflow. The Samsung ID is SVE-2020-18632 (November 2020).</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-28341">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-28340 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-28340</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-28340</guid>
    <pubDate>Sun, 08 Nov 2020 05:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-28340</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (FRP) via Secure Folder. The Samsung ID is SVE-2020-18546 (November 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-28340">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-26607 – An issue was discovered in TimaService on Samsung mobile devices with O(8.x), P(...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26607</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26607</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-26607</strong></p>
  <p>An issue was discovered in TimaService on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. PendingIntent with an empty intent is mishandled, allowing an attacker to perform a privileged action via a modified intent. The Samsung ID is SVE-2020-18418 (October 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26607">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26606 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26606</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26606</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26606</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. An attacker can access certain Secure Folder content via a debugging command. The Samsung ID is SVE-2020-18673 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26606">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26605 – An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Exyn...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26605</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26605</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26605</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Exynos chipsets) software. They allow attackers to obtain sensitive information by reading a log. The Samsung ID is SVE-2020-18596 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26605">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26604 – An issue was discovered in SystemUI on Samsung mobile devices with O(8.x), P(9.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26604</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26604</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26604</strong></p>
  <p>An issue was discovered in SystemUI on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows an unprivileged process to access contact numbers. The Samsung ID is SVE-2020-18467 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26604">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26602 – An issue was discovered in EthernetNetwork on Samsung mobile devices with O(8.1)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26602</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26602</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26602</strong></p>
  <p>An issue was discovered in EthernetNetwork on Samsung mobile devices with O(8.1), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows sdcard access by an unprivileged process. The Samsung ID is SVE-2020-18392 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26602">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26601 – An issue was discovered in DirEncryptService on Samsung mobile devices with O(8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26601</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26601</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26601</strong></p>
  <p>An issue was discovered in DirEncryptService on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. PendingIntent with an empty intent is mishandled, allowing an attacker to perform a privileged action via a modified intent. The Samsung ID is SVE-2020-18034 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26601">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26600 – An issue was discovered on Samsung mobile devices with Q(10.0) software. Auto Ho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26600</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26600</guid>
    <pubDate>Tue, 06 Oct 2020 19:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26600</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) software. Auto Hotspot allows attackers to obtain sensitive information. The Samsung ID is SVE-2020-17288 (October 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26600">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25279 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25279</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25279</guid>
    <pubDate>Fri, 11 Sep 2020 22:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25279</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseband component has a buffer overflow via an abnormal SETUP message, leading to execution of arbitrary code. The Samsung ID is SVE-2020-18098 (September 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25279">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25278 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25278</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25278</guid>
    <pubDate>Fri, 11 Sep 2020 22:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25278</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The Quram image codec library allows attackers to overwrite memory and execute arbitrary code via crafted JPEG data that is mishandled during decoding. The Samsung IDs are SVE-2020-18088, SVE-2020-18225, SVE-2020-18301 (September 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25278">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25056 – An issue was discovered on Samsung mobile devices with Q(10.0) (Galaxy S20) soft...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25056</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25056</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25056</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) (Galaxy S20) software. Because HAL improperly checks versions, bootloading by the S.LSI NFC chipset is mishandled. The Samsung ID is SVE-2020-16169 (August 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25056">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25055 – An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25055</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25055</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25055</strong></p>
  <p>An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The persona service allows attackers (who control an unprivileged SecureFolder process) to bypass admin restrictions in KnoxContainer. The Samsung ID is SVE-2020-18133 (August 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25055">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25054 – An issue was discovered on Samsung mobile devices with software through 2020-04-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25054</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25054</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25054</strong></p>
  <p>An issue was discovered on Samsung mobile devices with software through 2020-04-02 (Exynos modem chipsets). There is a heap-based buffer over-read in the Shannon baseband. The Samsung ID is SVE-2020-17239 (August 2020).</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25054">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25053 – An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chips...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25053</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25053</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25053</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The Samsung ID is SVE-2020-17435 (August 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25053">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25052 – An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chips...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25052</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25052</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25052</strong></p>
  <p>An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to execute arbitrary code or cause a denial of service (memory corruption) because indexes are mishandled. The Samsung ID is SVE-2020-17426 (August 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25052">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25051 – An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) softwa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25051</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25051</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25051</strong></p>
  <p>An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via AppInfo. The Samsung ID is SVE-2020-17758 (August 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25051">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25050 – An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) softwa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25050</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25050</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25050</strong></p>
  <p>An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. The CMC service allows attackers to obtain sensitive information. The Samsung ID is SVE-2020-17288 (August 2020).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25050">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-25049 – An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) softwa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25049</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25049</guid>
    <pubDate>Mon, 31 Aug 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-25049</strong></p>
  <p>An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. StatusBarService has insufficient DEX access control. The Samsung ID is SVE-2020-17797 (August 2020).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25049">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
