Memory Corruption Issues in Samsung Exynos Mobile and Automotive Processors
CVE-2023-29089

7.5HIGH

Key Information:

Vendor
Samsung
Vendor
CVE Published:
14 April 2023

Summary

A vulnerability has been identified in Samsung's Exynos Mobile and Automotive Processors, particularly affecting various modem versions. This vulnerability arises from inadequate parameter validation during the processing of SIP multipart messages, potentially leading to memory corruption. Exploiting this weakness could allow attackers to compromise device integrity, making it essential for users and developers to stay informed and take necessary precautions against potential threats.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.