LOW · 2.0

CVE-2023-37377

An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause ...

Vulnerability Description

An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause incorrect packet filtering.

CVSS Score

2.0

LOW

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:L
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
SamsungExynos 980 Firmware-
SamsungExynos 980-
SamsungExynos 850 Firmware-
SamsungExynos 850-
SamsungExynos 2100 Firmware-
SamsungExynos 2100-
SamsungExynos W920 Firmware-
SamsungExynos W920-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-37377?

CVE-2023-37377 is a vulnerability with a CVSS score of 2.0 (LOW). An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause ...

How severe is CVE-2023-37377?

CVE-2023-37377 has been rated LOW with a CVSS base score of 2.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-37377?

Check the references section above for vendor advisories and patch information. Affected products include: Samsung Exynos 980 Firmware, Samsung Exynos 980, Samsung Exynos 850 Firmware, Samsung Exynos 850, Samsung Exynos 2100 Firmware.