PT-2024-20724 · Samsung · Exynos

Published

2024-09-10

·

Updated

2025-07-01

·

CVE-2024-25073

CVSS v3.1

5.9

Medium

VectorAC:H/AV:N/A:H/C:N/I:N/PR:N/S:U/UI:N
Name of the Vulnerable Software and Affected Versions Samsung Semiconductor Mobile Processor and Modem Exynos versions 9820 through 9825 Samsung Semiconductor Mobile Processor and Modem Exynos versions 980 through 990 Samsung Semiconductor Mobile Processor and Modem Exynos versions 850 through 1080 Samsung Semiconductor Mobile Processor and Modem Exynos versions 2100 through 2200 Samsung Semiconductor Mobile Processor and Modem Exynos versions 1280 through 1380 Samsung Semiconductor Mobile Processor and Modem Exynos version 1330 Samsung Semiconductor Mobile Processor and Modem Exynos version 9110 Samsung Semiconductor Mobile Processor and Modem Exynos version W920 Samsung Semiconductor Mobile Processor and Modem Exynos version W930 Samsung Semiconductor Mobile Processor and Modem Exynos Modem version 5123 Samsung Semiconductor Mobile Processor and Modem Exynos Modem version 5300
Description The baseband software does not properly check a pointer specified by the CC (Call Control module), which can lead to Denial of Service (Untrusted Pointer Dereference).
Recommendations For Samsung Semiconductor Mobile Processor and Modem Exynos versions 9820 through 9825, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos versions 980 through 990, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos versions 850 through 1080, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos versions 2100 through 2200, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos versions 1280 through 1380, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos version 1330, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos version 9110, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos version W920, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos version W930, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos Modem version 5123, update to a version that properly checks pointers specified by the CC module. For Samsung Semiconductor Mobile Processor and Modem Exynos Modem version 5300, update to a version that properly checks pointers specified by the CC module. As a temporary workaround, consider disabling the CC module until a patch is available.

Fix

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2024-25073

Affected Products

Exynos