PT-2023-22134 · Samsung · Exynos Modem 5300+6

Published

2023-04-14

·

Updated

2023-05-16

·

CVE-2023-29087

CVSS v3.1

6.8

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Exynos Mobile Processor (affected versions not specified) Exynos Modem 5123 (affected versions not specified) Exynos Modem 5300 (affected versions not specified) Exynos 980 (affected versions not specified) Exynos 1080 (affected versions not specified) Exynos 9110 (affected versions not specified) Exynos Auto T5123 (affected versions not specified)
Description An issue was discovered in the Exynos Mobile Processor, Automotive Processor, and Modem, where memory corruption can occur due to insufficient parameter validation while decoding an SIP Retry-After header.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-29087

Affected Products

Exynos 1080
Exynos 9110
Exynos 980
Exynos Auto T5123
Exynos Mobile Processor
Exynos Modem 5123
Exynos Modem 5300