CVE-2022-39847
https://notcve.org/view.php?id=CVE-2022-39847
Use after free vulnerability in set_nft_pid and signal_handler function of NFC driver prior to SMR Oct-2022 Release 1 allows attackers to perform malicious actions. Una vulnerabilidad de uso de memoria previamente liberada en la función set_nft_pid y signal_handler del controlador NFC versiones anteriores a SMR Oct-2022 Release 1, permite a atacantes llevar a cabo acciones maliciosas • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=10 • CWE-416: Use After Free •
CVE-2022-39848
https://notcve.org/view.php?id=CVE-2022-39848
Exposure of sensitive information in AT_Distributor prior to SMR Oct-2022 Release 1 allows local attacker to access SerialNo via log. La exposición de información confidencial en AT_Distributor versiones anteriores a SMR Oct-2022 Release 1, permite a un atacante local acceder a SerialNo por medio del registro • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=10 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-213: Exposure of Sensitive Information Due to Incompatible Policies •
CVE-2022-39853
https://notcve.org/view.php?id=CVE-2022-39853
A use after free vulnerability in perf-mgr driver prior to SMR Oct-2022 Release 1 allows attacker to cause memory access fault. Una vulnerabilidad de uso de memoria previamente liberada en el controlador perf-mgr versiones anteriores a SMR Oct-2022 Release 1, permite a un atacante causar un fallo de acceso a la memoria • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=10 • CWE-416: Use After Free •
CVE-2022-39852
https://notcve.org/view.php?id=CVE-2022-39852
A heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release 1 allows attacker to perform code execution. Una vulnerabilidad de desbordamiento en la región heap de la memoria en makeContactAGIF en la biblioteca libagifencoder.quram.so versiones anteriores a SMR Oct-2022 Release 1, permite a un atacante llevar a cabo una ejecución de código • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=10 • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2022-39851
https://notcve.org/view.php?id=CVE-2022-39851
Improper access control vulnerability in CocktailBarService prior to SMR Oct-2022 Release 1 allows local attacker to bind service that require BIND_REMOTEVIEWS permission. Una vulnerabilidad de control de acceso inapropiado en CocktailBarService versiones anteriores a SMR Oct-2022 Release 1, permite a un atacante local enlazar servicios que requieren el permiso BIND_REMOTEVIEWS • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=10 • CWE-284: Improper Access Control •