CVE-2024-39343

EUVD-2024-38288
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, Modem 5123, and Modem 5300. The baseband software does not properly check the length specified by the MM (Mobility Management) module, which can lead to Denial of Service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
mitreCNA
7 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AC:H/AV:N/A:H/C:L/I:L/PR:N/S:U/UI:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
Affected Products (NVD)
VendorProductVersion
samsungexynos_2100_firmware
-
samsungexynos_1280_firmware
-
samsungexynos_1330_firmware
-
samsungexynos_1380_firmware
-
samsungexynos_1480_firmware
-
samsungexynos_2400_firmware
-
samsungexynos_9110_firmware
-
samsungexynos_modem_5123_firmware
-
samsungexynos_modem_5300_firmware
-
𝑥
= Vulnerable software versions