Product:

Exynos_1380_firmware

(Samsung)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 39
Date Id Summary Products Score Patch Annotated
2024-06-05 CVE-2024-27375 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_followup_get_nl_params(), there is no input validation check on hal_req->sdea_service_specific_info_len coming from userspace, which can lead to a heap overwrite. Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_850_firmware, Exynos_980_firmware 7.8
2024-06-05 CVE-2024-27370 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_config_get_nl_params(), there is no input validation check on hal_req->num_config_discovery_attr coming from userspace, which can lead to a heap overwrite. Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_850_firmware, Exynos_980_firmware 7.8
2024-06-07 CVE-2024-32503 An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper memory deallocation checking, which can result in a UAF (Use-After-Free) vulnerability. Exynos_1080_firmware, Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2100_firmware, Exynos_850_firmware, Exynos_w920_firmware, Exynos_w930_firmware 7.8
2024-06-05 CVE-2024-27372 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_config_get_nl_params(), there is no input validation check on disc_attr->infrastructure_ssid_len coming from userspace, which can lead to a heap overwrite. Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_850_firmware, Exynos_980_firmware 7.8
2024-06-05 CVE-2023-49927 An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the RRC. This can lead to a lack of encryption. Exynos_1080_firmware, Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2100_firmware, Exynos_2200_firmware, Exynos_850_firmware, Exynos_980_firmware, Exynos_9820_firmware, Exynos_9825_firmware, Exynos_990_firmware, Exynos_modem_5123_firmware, Exynos_modem_5300_firmware 5.3
2024-06-05 CVE-2023-49928 An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check states specified by the RRC. This can lead to disclosure of sensitive information. Exynos_1080_firmware, Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2100_firmware, Exynos_2200_firmware, Exynos_850_firmware, Exynos_980_firmware, Exynos_9820_firmware, Exynos_9825_firmware, Exynos_990_firmware, Exynos_modem_5123_firmware, Exynos_modem_5300_firmware 7.5
2024-06-13 CVE-2024-32504 An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos 1280, Exynos 1380, Exynos 1330, Exynos W920, Exynos W930. The mobile processor lacks proper length checking, which can result in an OOB (Out-of-Bounds) Write vulnerability. Exynos_1080_firmware, Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2100_firmware, Exynos_850_firmware, Exynos_w920_firmware, Exynos_w930_firmware 7.8
2024-07-09 CVE-2024-27362 A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exynos 2400 where they do not properly check the length of the data, which can lead to a Information disclosure. Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2200_firmware, Exynos_2400_firmware 7.5
2024-06-05 CVE-2024-27374 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_publish_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite. Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_850_firmware, Exynos_980_firmware 7.8
2024-06-05 CVE-2023-50804 An issue was discovered in Samsung Mobile Processor, and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the NAS (Non-Access-Stratum) module. This can lead to bypass of authentication. Exynos_1080_firmware, Exynos_1280_firmware, Exynos_1330_firmware, Exynos_1380_firmware, Exynos_2100_firmware, Exynos_2200_firmware, Exynos_850_firmware, Exynos_980_firmware, Exynos_9820_firmware, Exynos_9825_firmware, Exynos_990_firmware, Exynos_modem_5123_firmware, Exynos_modem_5300_firmware 5.3