CVE-2024-25073 MEDIUM

CVE-2024-25073

Vendor N/A
Product n/a
Published September 10, 2024
Last update December 4, 2024

CVSS base score

5.9/10
Attack vector Network
Attack complexity High
Privileges required None
User interaction None
Confidentiality None
Integrity None

CVSS vector

CVSS:3.1/AC:H/AV:N/A:H/C:N/I:N/PR:N/S:U/UI:N

What the vulnerability does

01Description

An issue was discovered in Samsung Semiconductor Mobile Processor and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check a pointer specified by the CC (Call Control module), which can lead to Denial of Service (Untrusted Pointer Dereference).

Key dates

02Disclosure timeline

September 10, 2024 CVE published
December 4, 2024 Record updated