Inconsistency in Packet Filtering in Samsung Exynos Mobile and Wearable Processors
CVE-2023-37377

2LOW

Key Information:

Vendor
Samsung
Vendor
CVE Published:
8 September 2023

Summary

A vulnerability has been identified in the Samsung Exynos Mobile Processor and Wearable Processor series, specifically impacting the Exynos 980, Exynos 850, Exynos 2100, and Exynos W920 models. This vulnerability arises from improper handling of length parameter inconsistencies, potentially leading to incorrect packet filtering. This flaw could expose systems to various security risks, including unauthorized data access and exploitation. Users are encouraged to refer to Samsung's security updates for more information on mitigation.

References

CVSS V3.1

Score:
2
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.