PT-2023-22138 · Samsung · Exynos Modem 5300+6

Published

2023-04-14

·

Updated

2023-05-11

·

CVE-2023-29090

CVSS v3.1

6.8

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123 Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5300 Exynos Mobile Processor, Automotive Processor and Modem for Exynos 980 Exynos Mobile Processor, Automotive Processor and Modem for Exynos 1080 Exynos Mobile Processor, Automotive Processor and Modem for Exynos 9110 Exynos Mobile Processor, Automotive Processor and Modem for Exynos Auto T5123
Description An issue was discovered in the Exynos Mobile Processor, Automotive Processor, and Modem, where memory corruption can occur due to insufficient parameter validation while decoding an SIP Via header.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-29090

Affected Products

Exynos 1080
Exynos 9110
Exynos 980
Exynos Auto T5123
Exynos Mobile Processor
Exynos Modem 5123
Exynos Modem 5300