
CVE-2024-20858
https://notcve.org/view.php?id=CVE-2024-20858
07 May 2024 — Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application. Vulnerabilidad de control de acceso inadecuado en setCocktailHostCallbacks de CocktailBarService antes de SMR Mayo-2024 Versión 1 permite a atacantes locales acceder a información de la aplicación actual. • https://security.samsungmobile.com/securityUpdate.smsb?year=2024&month=05 •

CVE-2024-20844
https://notcve.org/view.php?id=CVE-2024-20844
02 Apr 2024 — Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code. Vulnerabilidad de escritura fuera de los límites al analizar las palabras de código restantes en libsavsac.so antes de SMR de abril de 2024, versión 1, permite a un atacante local ejecutar código arbitrario. • https://security.samsungmobile.com/securityUpdate.smsb?year=2024&month=04 •

CVE-2024-20832
https://notcve.org/view.php?id=CVE-2024-20832
05 Mar 2024 — Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code. El desbordamiento del montón en Little Kernel en el gestor de arranque anterior a SMR Mar-2024 Release 1 permite a un atacante privilegiado ejecutar código arbitrario. • https://security.samsungmobile.com/securityUpdate.smsb?year=2024&month=03 •

CVE-2012-2980
https://notcve.org/view.php?id=CVE-2012-2980
21 Aug 2012 — The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC ChaCha, AT&T Status, HTC Desire Z, T-Mobile G2, T-Mobile myTouch 4G Slide, and Samsung Galaxy S stores touch coordinates in the dmesg buffer, which allows remote attackers to obtain sensitive information via a crafted application, as demonstrated by PIN numbers, telephone numbers, and text messages. El método de implementación onTouchEvent en Samsumg y HTC para Android en ... • http://www.htc.com/www/help/app-security-fix • CWE-255: Credentials Management Errors •