关键漏洞信息 SMR-MAY-2024 Google Patches: Critical: - CVE-2023-28582 - CVE-2024-23706 - CVE-2024-23700 High: - Multiple CVEs (CVE-2024-0042, CVE-2024-0039, etc.) Moderate: - CVE-2024-20021 - Already included in previous updates: CVE-2023-32890 Not applicable to Samsung devices: - CVE-2023-28547 - CVE-2023-33023 Samsung Vulnerabilities and Exposures (SVE): Authentication bypass in Setupwizard: SVE-2023-1778 (CVE-2024-20866) Improper access control in multitasking framework: SVE-2023-2193 (CVE-2024-20855) Improper authentication in Secure Folder: SVE-2023-2265 (CVE-2024-20856) Improper access control in CocktailBarService: SVE-2024-0041 (CVE-2024-20857), SVE-2024-0042 (CVE-2024-20858) Improper access control in FactoryCamera: SVE-2024-0070 (CVE-2024-20859) Improper export of android application components in TelephonyUI: SVE-2024-0071 (CVE-2024-20860) Use after free in SveService: SVE-2024-0092 (CVE-2024-20861) Out-of-bounds write in SveService: SVE-2024-0096 (CVE-2024-20862) Improper input validation in SNAP in HAL: SVE-2024-0185 (CVE-2024-20863) Authentication bypass in bootloader: SVE-2024-0234 (CVE-2024-20865) Improper access control in DarManagerService: SVE-2024-0357 (CVE-2024-20864)