CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

samsung

android

19 known vulnerabilities · sorted by CVSS score

CVE-2021-25487
HIGH7.3

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

samsung / android+27
Local
Published Oct 6, 2021
CVE-2023-21420
HIGH7.3

Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary code execution.

samsung / android+86
Local
Published Feb 9, 2023
CVE-2021-25395
MEDIUM6.4

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.

samsung / android+11
Local
Published Jun 11, 2021
CVE-2021-25394
MEDIUM6.4

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.

samsung / android+11
Local
Published Jun 11, 2021
CVE-2021-25369
MEDIUM6.2

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

samsung / android+46
Local
Published Mar 26, 2021
CVE-2021-25371
MEDIUM6.1

A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.

samsung / android+3
Physical
Published Mar 26, 2021
CVE-2021-25370
MEDIUM6.1

An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.

samsung / android+49
Physical
Published Mar 26, 2021
CVE-2021-25372
MEDIUM6.1

An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.

samsung / android+3
Physical
Published Mar 26, 2021
CVE-2023-21421
MEDIUM5.9

Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker to access device SIM PIN.

samsung / android+127
Local
Published Feb 9, 2023
CVE-2023-21422
MEDIUM5.7

Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attackers to set custom DNS server without permission via binding WifiService.

samsung / android+62
Local
Published Feb 9, 2023
CVE-2023-21427
MEDIUM5.4

Improper access control vulnerability in NfcTile prior to SMR Jan-2023 Release 1 allows to attacker to use NFC without user recognition.

samsung / android+77
Adjacent
Published Feb 9, 2023
CVE-2023-21423
MEDIUM5.1

Improper authorization vulnerability in ChnFileShareKit prior to SMR Jan-2023 Release 1 allows attacker to control BLE advertising without permission using unprotected action.

samsung / android+40
Local
Published Feb 9, 2023
CVE-2023-21424
MEDIUM5.1

Improper Handling of Insufficient Permissions or Privileges vulnerability in SemChameleonHelper prior to SMR Jan-2023 Release 1 allows attacker to modify network related values, network code, carrier id and operator brand.

samsung / android+77
Local
Published Feb 9, 2023
CVE-2021-25337
MEDIUM4.4

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.

samsung / android+47
Local
Published Mar 4, 2021
CVE-2023-21426
MEDIUM4.3

Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN.

samsung / android+49
Local
Published Feb 9, 2023
CVE-2023-21425
MEDIUM4.3

Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to get sensitive information.

samsung / android+127
Local
Published Feb 9, 2023
CVE-2023-21429
MEDIUM4.0

Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID.

samsung / android+127
Local
Published Feb 9, 2023
CVE-2023-21428
MEDIUM4.0

Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Preferred Call. The patch removes unused code.

samsung / android+77
Local
Published Feb 9, 2023
CVE-2021-25489
LOW3.3

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

samsung / android+27
Local
Published Oct 6, 2021