CVE-2024-27364: Samsung Exynos 1080 Firmware
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_roamed_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.
Affected products
- Samsung Exynos 1080 Firmware: affected versions not specified
- Samsung Exynos 1280 Firmware: affected versions not specified
- Samsung Exynos 1330 Firmware: affected versions not specified
- Samsung Exynos 1380 Firmware: affected versions not specified
- Samsung Exynos 1480 Firmware: affected versions not specified
- Samsung Exynos 850 Firmware: affected versions not specified
- Samsung Exynos 980 Firmware: affected versions not specified
- Samsung Exynos w920 Firmware: affected versions not specified
- Samsung Exynos w930 Firmware: affected versions not specified
Published 2024-09-09. Last modified 2026-06-17.