Vulnerabilities
Vulnerable Software
Samsung:  >> Exynos 9830  Security Vulnerabilities
An improper input validation vulnerability in NPU firmware prior to SMR MAY-2021 Release 1 allows arbitrary memory write and code execution.
CVSS Score
6.7
EPSS Score
0.0
Published
2021-06-11
A possible out of bounds write vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write.
CVSS Score
7.8
EPSS Score
0.0
Published
2021-06-11
A possible buffer overflow vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write and code execution.
CVSS Score
7.8
EPSS Score
0.0
Published
2021-06-11
CVE-2021-25371
Known exploited
A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
CVSS Score
6.1
EPSS Score
0.025
Published
2021-03-26
CVE-2021-25372
Known exploited
An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
CVSS Score
6.1
EPSS Score
0.019
Published
2021-03-26
Improper memory access control in RKP in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to write certain part of RKP EL2 memory region.
CVSS Score
4.4
EPSS Score
0.0
Published
2021-03-04
Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corrupt EL2 memory.
CVSS Score
4.4
EPSS Score
0.0
Published
2021-03-04
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 980, 9820, and 9830 chipsets) software. The NPU driver allows attackers to execute arbitrary code because of unintended write and read operations on memory. The Samsung ID is SVE-2020-18610 (November 2020).
CVSS Score
7.8
EPSS Score
0.001
Published
2020-11-08
An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to execute arbitrary code or cause a denial of service (memory corruption) because indexes are mishandled. The Samsung ID is SVE-2020-17426 (August 2020).
CVSS Score
9.8
EPSS Score
0.002
Published
2020-08-31
An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The Samsung ID is SVE-2020-17435 (August 2020).
CVSS Score
9.8
EPSS Score
0.002
Published
2020-08-31


Contact Us

Shodan ® - All rights reserved