CVE-2024-31960

An issue was discovered in Samsung Mobile Processor Exynos 1480, Exynos 2400. The xclipse amdgpu driver has a reference count bug. This can lead to a use after free.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*

History

24 Sep 2024, 18:08

Type Values Removed Values Added
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-31960/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-31960/ - Vendor Advisory
CPE cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*
Summary
  • (es) Se ha descubierto un problema en el procesador móvil Samsung Exynos 1480 y Exynos 2400. El controlador xclipse amdgpu tiene un error de recuento de referencias. Esto puede provocar un use after free.
First Time Samsung exynos 2400
Samsung exynos 1480 Firmware
Samsung exynos 2400 Firmware
Samsung exynos 1480
Samsung

10 Sep 2024, 20:35

Type Values Removed Values Added
CWE CWE-416

10 Sep 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-10 16:15

Updated : 2024-09-24 18:08


NVD link : CVE-2024-31960

Mitre link : CVE-2024-31960

CVE.ORG link : CVE-2024-31960


JSON object : View

Products Affected

samsung

  • exynos_2400_firmware
  • exynos_1480_firmware
  • exynos_2400
  • exynos_1480
CWE
CWE-416

Use After Free