Samsung Products Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Operating Systems - Mobile & Apps
Multiple vulnerabilities were identified in Samsung Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, remote code execution, data manipulation and sensitive information disclosure on the targeted system.
Note:
CVE-2023-0266 is being exploited in the wild. The vulnerability is related to Linux kernel contains a use-after-free vulnerability that allows for privilege escalation to gain ring0 access from the local user.
Impact
- Denial of Service
- Elevation of Privilege
- Information Disclosure
- Remote Code Execution
- Data Manipulation
System / Technologies affected
- Android 11, 12, 13
- Select devices using Exynos CP chipsets
For affected products, please refer to the link below:
https://security.samsungmobile.com/securityUpdate.smsb
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor:
https://security.samsungmobile.com/securityUpdate.smsb
Vulnerability Identifier
- CVE-2021-0877
- CVE-2022-25713
- CVE-2022-33273
- CVE-2022-33305
- CVE-2022-34144
- CVE-2022-40504
- CVE-2022-40508
- CVE-2022-46394
- CVE-2022-46395
- CVE-2022-46396
- CVE-2022-46891
- CVE-2022-47469
- CVE-2022-47470
- CVE-2022-47486
- CVE-2022-47487
- CVE-2022-47488
- CVE-2023-0266
- CVE-2023-20694
- CVE-2023-20695
- CVE-2023-20696
- CVE-2023-20697
- CVE-2023-20698
- CVE-2023-20699
- CVE-2023-20726
- CVE-2023-20965
- CVE-2023-21095
- CVE-2023-21102
- CVE-2023-21105
- CVE-2023-21106
- CVE-2023-21108
- CVE-2023-21115
- CVE-2023-21121
- CVE-2023-21122
- CVE-2023-21123
- CVE-2023-21124
- CVE-2023-21126
- CVE-2023-21127
- CVE-2023-21128
- CVE-2023-21129
- CVE-2023-21130
- CVE-2023-21131
- CVE-2023-21135
- CVE-2023-21136
- CVE-2023-21137
- CVE-2023-21138
- CVE-2023-21139
- CVE-2023-21141
- CVE-2023-21142
- CVE-2023-21143
- CVE-2023-21144
- CVE-2023-21512
- CVE-2023-21513
- CVE-2023-21517
- CVE-2023-21665
- CVE-2023-21666
- CVE-2023-26085
Source
Related Link
Related Tags
Share with