2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-25493HIGH7.1Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 al...
CVE-2021-25492HIGH7.1Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 al...
CVE-2021-25491MEDIUM4.4A vulnerability in mfc driver prior to SMR Oct-2021 Release 1 allows memory corruption via NULL-pointer dereference.
CVE-2021-25490MEDIUM6A keyblob downgrade attack in keymaster prior to SMR Oct-2021 Release 1 allows attacker to trigger IV reuse vulnerabilit...
CVE-2021-25489MEDIUM5.5Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 ...
CVE-2021-25488MEDIUM5.5Lack of boundary checking of a buffer in recv_data() of modem interface driver prior to SMR Oct-2021 Release 1 allows OO...
CVE-2021-25487HIGH7.8Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows...
CVE-2021-25486LOW3.3Exposure of information vulnerability in ipcdump prior to SMR Oct-2021 Release 1 allows an attacker detect device inform...
CVE-2021-25485HIGH8Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file a...
CVE-2021-25484LOW3.3Improper authentication in InputManagerService prior to SMR Oct-2021 Release 1 allows monitoring the touch event.
CVE-2021-25483MEDIUM6.5Lack of boundary checking of a buffer in livfivextractor library prior to SMR Oct-2021 Release 1 allows OOB read.
CVE-2021-25482MEDIUM4.4SQL injection vulnerabilities in CMFA framework prior to SMR Oct-2021 Release 1 allow untrusted application to overwrite...
CVE-2021-25481MEDIUM6.7An improper error handling in Exynos CP booting driver prior to SMR Oct-2021 Release 1 allows local attackers to bypass ...
CVE-2021-25480HIGH7.5A lack of replay attack protection in GUTI REALLOCATION COMMAND message process in Qualcomm modem prior to SMR Oct-2021 ...
CVE-2021-25479HIGH7.2A possible heap-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitrar...
CVE-2021-25478HIGH7.2A possible stack-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitra...
CVE-2021-25477MEDIUM4.9An improper error handling in Mediatek RRC Protocol stack prior to SMR Oct-2021 Release 1 allows modem crash and remote ...
CVE-2021-25476MEDIUM4.4An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass th...
CVE-2021-25475MEDIUM6.7A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrar...
CVE-2021-25474MEDIUM4.4Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_show_on_qspanel value in SystemUI...
CVE-2021-25473MEDIUM4.4Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_hide_by_meadia_full value in Syst...
CVE-2021-25472LOW3.3An improper access control vulnerability in BluetoothSettingsProvider prior to SMR Oct-2021 Release 1 allows untrusted a...
CVE-2021-25471HIGH7.5A lack of replay attack protection in Security Mode Command process prior to SMR Oct-2021 Release 1 can lead to denial o...
CVE-2021-25470HIGH7.9An improper caller check logic of SMC call in TEEGRIS secure OS prior to SMR Oct-2021 Release 1 can be used to compromis...
CVE-2021-25469MEDIUM6.7A possible stack-based buffer overflow vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows arbitra...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now