PT-2025-45041 · Samsung · Exynos W1000+13

Published

2025-11-04

·

Updated

2025-11-07

·

CVE-2024-56426

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Samsung Mobile Processor and Wearable Processor Exynos 980 Samsung Mobile Processor and Wearable Processor Exynos 990 Samsung Mobile Processor and Wearable Processor Exynos 850 Samsung Mobile Processor and Wearable Processor Exynos 1080 Samsung Mobile Processor and Wearable Processor Exynos 2100 Samsung Mobile Processor and Wearable Processor Exynos 1280 Samsung Mobile Processor and Wearable Processor Exynos 2200 Samsung Mobile Processor and Wearable Processor Exynos 1330 Samsung Mobile Processor and Wearable Processor Exynos 1380 Samsung Mobile Processor and Wearable Processor Exynos 1480 Samsung Mobile Processor and Wearable Processor Exynos 2400 Samsung Mobile Processor and Wearable Processor Exynos W920 Samsung Mobile Processor and Wearable Processor Exynos W930 Samsung Mobile Processor and Wearable Processor Exynos W1000
Description A flaw exists due to the absence of a length check, which can result in out-of-bounds writes when processing malformed USB packets sent to the target device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2024-56426

Affected Products

Exynos 1080
Exynos 1280
Exynos 1330
Exynos 1380
Exynos 1480
Exynos 2100
Exynos 2200
Exynos 2400
Exynos 850
Exynos 980
Exynos 990
Exynos W1000
Exynos W920
Exynos W930