PT-2024-20725 · Samsung · Samsung Exynos Modem+1

Published

2024-09-10

·

Updated

2025-07-01

·

CVE-2024-25074

CVSS v3.1

5.9

Medium

VectorAC:H/AV:N/A:H/C:N/I:N/PR:N/S:U/UI:N
Name of the Vulnerable Software and Affected Versions Samsung Exynos versions 9820 through 9825 Samsung Exynos versions 980 through 990 Samsung Exynos versions 850 through 1080 Samsung Exynos versions 2100 through 2200 Samsung Exynos versions 1280 through 1380 Samsung Exynos version 1330 Samsung Exynos version 9110 Samsung Exynos version W920 Samsung Exynos version W930 Samsung Exynos Modem version 5123 Samsung Exynos Modem version 5300
Description The baseband software in Samsung Exynos processors does not properly check a pointer specified by the Session Management module, which can lead to Denial of Service due to an untrusted pointer dereference.
Recommendations For Samsung Exynos versions 9820 through 9825, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos versions 980 through 990, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos versions 850 through 1080, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos versions 2100 through 2200, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos versions 1280 through 1380, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos version 1330, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos version 9110, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos version W920, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos version W930, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos Modem version 5123, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service. For Samsung Exynos Modem version 5300, update to a version that properly checks pointers specified by the Session Management module to prevent Denial of Service.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2024-25074

Affected Products

Samsung Exynos
Samsung Exynos Modem