← Volver a CVEs
CVE-2024-32503
HIGH8.4
Descripcion
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper memory deallocation checking, which can result in a UAF (Use-After-Free) vulnerability.
Detalles CVE
Puntuacion CVSS v3.18.4
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado6/7/2024
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
samsung:exynos_1080samsung:exynos_1080_firmwaresamsung:exynos_1280samsung:exynos_1280_firmwaresamsung:exynos_1330samsung:exynos_1330_firmwaresamsung:exynos_1380samsung:exynos_1380_firmwaresamsung:exynos_2100samsung:exynos_2100_firmwaresamsung:exynos_850samsung:exynos_850_firmwaresamsung:exynos_w920samsung:exynos_w920_firmwaresamsung:exynos_w930samsung:exynos_w930_firmware
Debilidades (CWE)
CWE-416CWE-762
Referencias
https://semiconductor.samsung.com/support/quality-support/product-security-updates/(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.