Show filters
420 Total Results
Displaying 161-170 of 420
Sort by:
Attacker Value
Unknown

CVE-2024-31310

Disclosure Date: July 09, 2024 (last updated December 18, 2024)
In newServiceInfoLocked of AutofillManagerServiceImpl.java, there is a possible way to hide an enabled Autofill service app in the Autofill service settings due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
Attacker Value
Unknown

CVE-2024-34603

Disclosure Date: July 08, 2024 (last updated July 12, 2024)
Improper access control in Samsung Message prior to SMR Jul-2024 Release 1 allows local attackers to access location data.
Attacker Value
Unknown

CVE-2024-34602

Disclosure Date: July 08, 2024 (last updated July 12, 2024)
Use of implicit intent for sensitive communication in Samsung Messages prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34595

Disclosure Date: July 02, 2024 (last updated July 03, 2024)
Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.
Attacker Value
Unknown

CVE-2024-34594

Disclosure Date: July 02, 2024 (last updated July 03, 2024)
Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.
Attacker Value
Unknown

CVE-2024-34593

Disclosure Date: July 02, 2024 (last updated July 03, 2024)
Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34592

Disclosure Date: July 02, 2024 (last updated July 03, 2024)
Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34591

Disclosure Date: July 02, 2024 (last updated July 03, 2024)
Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34590

Disclosure Date: July 02, 2024 (last updated July 04, 2024)
Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34589

Disclosure Date: July 02, 2024 (last updated July 06, 2024)
Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.