NA - CVE-2025-20888 - Out-of-bounds write in handling the block size...
Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is...
NA - CVE-2025-20889 - Out-of-bounds read in decoding malformed...
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for...
NA - CVE-2025-20890 - Out-of-bounds write in decoding frame buffer in...
Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for...
NA - CVE-2025-20891 - Out-of-bounds read in decoding malformed...
Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required...
NA - CVE-2025-20892 - Protection Mechanism Failure in bootloader...
Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this...
NA - CVE-2025-20895 - Authentication Bypass Using an Alternate Path...
Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard.
NA - CVE-2025-20897 - Improper access control in Secure Folder prior...
Improper access control in Secure Folder prior to version 1.9.20.50 in Android 14, 1.8.11.0 in Android 13, and 1.7.04.0 in Android 12 allows local attacker to access data in Secure Folder.