MEDIUM · 5.1

CVE-2024-27361

A vulnerability was discovered in Samsung Mobile Processor Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, and Exynos 2400 that involves a time-of-check to tim...

Vulnerability Description

A vulnerability was discovered in Samsung Mobile Processor Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, and Exynos 2400 that involves a time-of-check to time-of-use (TOCTOU) race condition, which can lead to a Denial of Service.

CVSS Score

5.1

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
LOW
Availability
HIGH

Affected Products

VendorProductVersions
SamsungExynos 980 Firmware-
SamsungExynos 980-
SamsungExynos 990 Firmware-
SamsungExynos 990-
SamsungExynos 1080 Firmware-
SamsungExynos 1080-
SamsungExynos 2100 Firmware-
SamsungExynos 2100-
SamsungExynos 2200 Firmware-
SamsungExynos 2200-
SamsungExynos 1280 Firmware-
SamsungExynos 1280-
SamsungExynos 1380 Firmware-
SamsungExynos 1380-
SamsungExynos 2400 Firmware-
SamsungExynos 2400-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-27361?

CVE-2024-27361 is a vulnerability with a CVSS score of 5.1 (MEDIUM). A vulnerability was discovered in Samsung Mobile Processor Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, and Exynos 2400 that involves a time-of-check to tim...

How severe is CVE-2024-27361?

CVE-2024-27361 has been rated MEDIUM with a CVSS base score of 5.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-27361?

Check the references section above for vendor advisories and patch information. Affected products include: Samsung Exynos 980 Firmware, Samsung Exynos 980, Samsung Exynos 990 Firmware, Samsung Exynos 990, Samsung Exynos 1080 Firmware.