HIGH · 7.5

CVE-2024-56426

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000. The lack of a length check leads to ...

Vulnerability Description

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000. The lack of a length check leads to out-of-bounds writes via malformed USB packets to the target.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
SamsungExynos 1080 Firmware-
SamsungExynos 1080-
SamsungExynos 1280 Firmware-
SamsungExynos 1280-
SamsungExynos 1330 Firmware-
SamsungExynos 1330-
SamsungExynos 1380 Firmware-
SamsungExynos 1380-
SamsungExynos 1480 Firmware-
SamsungExynos 1480-
SamsungExynos 2200 Firmware-
SamsungExynos 2200-
SamsungExynos 2400 Firmware-
SamsungExynos 2400-
SamsungExynos 850 Firmware-
SamsungExynos 850-
SamsungExynos 980 Firmware-
SamsungExynos 980-
SamsungExynos 990 Firmware-
SamsungExynos 990-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-56426?

CVE-2024-56426 is a vulnerability with a CVSS score of 7.5 (HIGH). An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000. The lack of a length check leads to ...

How severe is CVE-2024-56426?

CVE-2024-56426 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-56426?

Check the references section above for vendor advisories and patch information. Affected products include: Samsung Exynos 1080 Firmware, Samsung Exynos 1080, Samsung Exynos 1280 Firmware, Samsung Exynos 1280, Samsung Exynos 1330 Firmware.