CVE-2024-20821: Samsung EXYNOS2400

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability possible to reconfigure OTP allows local attackers to transit RMA(Return Merchandise Authorization) mode, which disables security features. This attack needs additional privilege to control TEE.

Affected products

  • Samsung EXYNOS2400: affected versions not specified
  • Samsung Exynos 1330: affected versions not specified
  • Samsung Exynos 1380: affected versions not specified
  • Samsung Mobile Samsung Mobile Devices

Published 2024-05-07. Last modified 2026-06-17.