Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43436 | Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 13 Nov 2024 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung galaxy S24
|
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:h:samsung:galaxy_s24:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Samsung galaxy S24
|
Wed, 06 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung
Samsung galaxy S24 Firmware |
|
| CPEs | cpe:2.3:o:samsung:galaxy_s24_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Samsung
Samsung galaxy S24 Firmware |
|
| Metrics |
ssvc
|
Wed, 06 Nov 2024 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2024-11-06T15:56:36.373Z
Reserved: 2024-10-15T05:26:08.659Z
Link: CVE-2024-49409
Updated: 2024-11-06T15:55:04.135Z
Status : Analyzed
Published: 2024-11-06T03:15:06.317
Modified: 2024-11-13T00:51:10.317
Link: CVE-2024-49409
No data.
OpenCVE Enrichment
No data.
EUVD