CVE-2024-27360

MEDIUM

Samsung Exynos 850 1080 2100 2200 1280 1380 1330 W930 Firmware - Denial of Service via Improper Length Validation

Title source: llm
STIX 2.1

Description

A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, and Exynos W930 where they do not properly check length of the data, which can lead to a Denial of Service.

Scores

CVSS v3 6.0
EPSS 0.0038
EPSS Percentile 29.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-1284
Status published
Products (8)
samsung/exynos_1080_firmware
samsung/exynos_1280_firmware
samsung/exynos_1330_firmware
samsung/exynos_1380_firmware
samsung/exynos_2100_firmware
samsung/exynos_2200_firmware
samsung/exynos_850_firmware
samsung/exynos_w930_firmware
Published Jul 09, 2024
Tracked Since Feb 18, 2026