Jiayy

#6288of 53,630
43.2Total CVSS
Vulnerabilities · 7
Medium
6
High
1
PT-2024-21852
5.5
2024-09-09
Samsung · Exynos W920 · CVE-2024-27364
**Name of the Vulnerable Software and Affected Versions** Exynos 980 Exynos 850 Exynos 1080 Exynos 1280 Exynos 1380 Exynos 1330 Exynos 1480 Exynos W920 Exynos W930 **Description** An issue was discovered in the function `slsi rx roamed ind()`, where there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read. **Recommendations** For Exynos 980, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 850, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 1080, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 1280, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 1380, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 1330, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos 1480, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos W920, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. For Exynos W930, update to a version that includes input validation checks for the `slsi rx roamed ind()` function. As a temporary workaround, consider disabling the `slsi rx roamed ind()` function until a patch is available.