Description
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_publish_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-24578 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_publish_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite. |
References
History
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 13 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung Mobile
Samsung Mobile exynos |
|
| CPEs | cpe:2.3:h:samsung_mobile:exynos:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Samsung Mobile
Samsung Mobile exynos |
|
| Metrics |
ssvc
|
Subscriptions
Samsung
Subscribe
Exynos 1280
Subscribe
Exynos 1280 Firmware
Subscribe
Exynos 1330
Subscribe
Exynos 1330 Firmware
Subscribe
Exynos 1380
Subscribe
Exynos 1380 Firmware
Subscribe
Exynos 850
Subscribe
Exynos 850 Firmware
Subscribe
Exynos 980
Subscribe
Exynos 980 Firmware
Subscribe
Samsung Mobile
Subscribe
Exynos
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:47:26.637Z
Reserved: 2024-02-25T00:00:00.000Z
Link: CVE-2024-27374
Updated: 2024-08-02T00:34:52.378Z
Status : Modified
Published: 2024-06-05T19:15:13.347
Modified: 2024-11-21T09:04:28.457
Link: CVE-2024-27374
No data.
OpenCVE Enrichment
No data.
EUVD