Heap Overwrite Vulnerability in Exynos Mobile Processor
CVE-2024-27387
7.8HIGH
What is CVE-2024-27387?
A vulnerability has been identified in various Samsung Exynos Mobile Processors, specifically within the function slsi_rx_range_done_ind(). This flaw stems from the absence of input validation checks on the rtt_id parameter received from userspace. Without proper validation, an attacker could potentially exploit this weakness, resulting in a heap overwrite condition that could compromise system integrity and lead to unauthorized access or manipulation of sensitive data.