CVE-2023-30918
https://notcve.org/view.php?id=CVE-2023-30918
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. • https://www.unisoc.com/en_us/secy/announcementDetail/1676902764208259073 • CWE-862: Missing Authorization •
CVE-2023-30917
https://notcve.org/view.php?id=CVE-2023-30917
In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. • https://www.unisoc.com/en_us/secy/announcementDetail/1676902764208259073 • CWE-862: Missing Authorization •
CVE-2023-30916
https://notcve.org/view.php?id=CVE-2023-30916
In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. • https://www.unisoc.com/en_us/secy/announcementDetail/1676902764208259073 • CWE-862: Missing Authorization •
CVE-2023-30678
https://notcve.org/view.php?id=CVE-2023-30678
Potential zip path traversal vulnerability in Calendar application prior to version 12.4.07.15 in Android 13 allows attackers to write arbitrary file. • https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=07 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2023-30671
https://notcve.org/view.php?id=CVE-2023-30671
Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local attackers to downgrade installed application. • https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=07 •