Vulnerability Description
A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, and Exynos Modem 5300 that involves incorrect authorization of LTE NAS messages and leads to downgrading to lower network generations and repeated DDOS.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samsung | Exynos 9820 Firmware | - |
| Samsung | Exynos 9820 | - |
| Samsung | Exynos 9825 Firmware | - |
| Samsung | Exynos 9825 | - |
| Samsung | Exynos 980 Firmware | - |
| Samsung | Exynos 980 | - |
| Samsung | Exynos 990 Firmware | - |
| Samsung | Exynos 990 | - |
| Samsung | Exynos 850 Firmware | - |
| Samsung | Exynos 850 | - |
| Samsung | Exynos 1080 Firmware | - |
| Samsung | Exynos 1080 | - |
| Samsung | Exynos 2100 Firmware | - |
| Samsung | Exynos 2100 | - |
| Samsung | Exynos 2200 Firmware | - |
| Samsung | Exynos 2200 | - |
| Samsung | Exynos 1280 Firmware | - |
| Samsung | Exynos 1280 | - |
| Samsung | Exynos 1380 Firmware | - |
| Samsung | Exynos 1380 | - |
Related Weaknesses (CWE)
References
- https://semiconductor.samsung.com/support/quality-support/product-security-updatVendor Advisory
- https://semiconductor.samsung.com/support/quality-support/product-security-updatVendor Advisory
- https://semiconductor.samsung.com/support/quality-support/product-security-updatVendor Advisory
- https://semiconductor.samsung.com/support/quality-support/product-security-updatVendor Advisory
FAQ
What is CVE-2024-29153?
CVE-2024-29153 is a vulnerability with a CVSS score of 8.1 (HIGH). A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos ...
How severe is CVE-2024-29153?
CVE-2024-29153 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-29153?
Check the references section above for vendor advisories and patch information. Affected products include: Samsung Exynos 9820 Firmware, Samsung Exynos 9820, Samsung Exynos 9825 Firmware, Samsung Exynos 9825, Samsung Exynos 980 Firmware.