CVE-2024-27386
EUVD-2024-2459009.07.2024, 21:15
A vulnerability was discovered in the slsi_handle_nan_rx_event_log_ind function in Samsung Mobile Processor Exynos 1380 and Exynos 1480 related to no input validation check on tag_len for tx coming from userspace, which can lead to heap overwrite.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| samsung | exynos_1380_firmware | - |
| samsung | exynos_1480_firmware | - |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| samsung | exynos_1380 | 𝑥 ≤ * | ADP |
| samsung | exynos_1480 | 𝑥 ≤ * | ADP |
Common Weakness Enumeration
References