PT-2024-22588 · Samsung · Exynos W920+8

Published

2024-06-05

·

Updated

2024-06-27

·

CVE-2024-28818

CVSS v3.1

5.9

Medium

VectorAC:H/AV:N/A:N/C:H/I:N/PR:N/S:U/UI:N
Name of the Vulnerable Software and Affected Versions Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos versions 980 through 2400 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos 850 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos 9110 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos W920 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos W930 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Modem 5123 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Modem 5300 Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Auto T5123
Description An issue was discovered in the baseband software of Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem. The baseband software does not properly check states specified by the RRC (Radio Resource Control) module. This can lead to disclosure of sensitive information.
Recommendations For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos versions 980 through 2400, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos 850, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos 9110, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos W920, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Exynos W930, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Modem 5123, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Modem 5300, update to a version that properly checks states specified by the RRC module. For Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem Auto T5123, update to a version that properly checks states specified by the RRC module.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-28818

Affected Products

Auto T5123
Exynos 2400
Exynos 850
Exynos 9110
Exynos 980
Exynos W920
Exynos W930
Modem 5123
Modem 5300