
CVE-2019-20625
https://notcve.org/view.php?id=CVE-2019-20625
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.1) and O(8.x) (Exynos chipsets) software. The ion debugfs driver allows information disclosure. The Samsung ID is SVE-2018-13427 (February 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.1) y O(8.x) (chipsets Exynos). El controlador ion debugfs permite una divulgación de información. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2019-20624
https://notcve.org/view.php?id=CVE-2019-20624
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. S-Voice leaks keyboard learned words via the lock screen. The Samsung ID is SVE-2018-12981 (February 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x) y O(8.x). S-Voice filtra palabras aprendidas del teclado por medio de la pantalla de bloqueo. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-306: Missing Authentication for Critical Function •

CVE-2019-20623
https://notcve.org/view.php?id=CVE-2019-20623
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), and P(9.0) software. Gallery has uninitialized memory disclosure. The Samsung ID is SVE-2018-13060 (February 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.1), O(8.x) y P(9.0). Gallery presenta una divulgación de memoria no inicializada. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-908: Use of Uninitialized Resource •

CVE-2019-20622
https://notcve.org/view.php?id=CVE-2019-20622
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. There is a baseband stack overflow. The Samsung ID is SVE-2018-13188 (February 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x), O(8.x) y P(9.0) (chipsets Exynos). Se presenta un desbordamiento de pila (stack) de la banda base. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-787: Out-of-bounds Write •

CVE-2019-20621
https://notcve.org/view.php?id=CVE-2019-20621
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. There is a baseband heap overflow. The Samsung ID is SVE-2018-13187 (February 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x), O(8.x) y P(9.0) (chipsets Exynos). Se presenta un desbordamiento de pila (heap) de la banda base. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-787: Out-of-bounds Write •

CVE-2019-20616
https://notcve.org/view.php?id=CVE-2019-20616
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Gallery leaks a thumbnail of Private Mode content. The Samsung ID is SVE-2018-13563 (March 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x) y O(8.x). Gallery filtra una miniatura del contenido del Private Mode. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2019-20615
https://notcve.org/view.php?id=CVE-2019-20615
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Attackers can bypass Factory Reset Protection (FRP) via SVoice T&C. The Samsung ID is SVE-2018-13547 (March 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x) y O(8.x). Los atacantes pueden omitir la Factory Reset Protection (FRP) por medio de SVoice T&C. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2019-20614
https://notcve.org/view.php?id=CVE-2019-20614
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. Allshare allows attackers to access sensitive information. The Samsung ID is SVE-2018-13453 (March 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x), O(8.x) y P(9.0). Allshare permite a atacantes acceder a información confidencial. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-862: Missing Authorization •

CVE-2019-20613
https://notcve.org/view.php?id=CVE-2019-20613
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is time-based SQL injection in Contacts. The Samsung ID is SVE-2018-13452 (March 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x) y O(8.x). Se presenta una inyección SQL basada en tiempo en Contacts. • https://security.samsungmobile.com/securityUpdate.smsb • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2019-20612
https://notcve.org/view.php?id=CVE-2019-20612
24 Mar 2020 — An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) (Broadcom Wi-Fi, and SEC Wi-Fi chipsets) software. Wi-Fi allows a denial of service via TCP SYN packets. The Samsung ID is SVE-2018-13162 (March 2019). Se detectó un problema en dispositivos móviles Samsung con versiones de software N(7.x) y O(8.x) (chipsets Broadcom Wi-Fi y SEC Wi-Fi). Wi-Fi permite una denegación de servicio por medio de paquetes TCP SYN. • https://security.samsungmobile.com/securityUpdate.smsb •