An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, Modem 5123, and Modem 5300. The baseband software does not properly check the length specified by the MM (Mobility Management) module, which can lead to Denial of Service.
References
Link | Resource |
---|---|
https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
History
01 Jul 2025, 15:00
Type | Values Removed | Values Added |
---|---|---|
First Time |
Samsung exynos 1280 Firmware
Samsung exynos Modem 5300 Firmware Samsung exynos 2100 Firmware Samsung exynos 1480 Samsung exynos 2400 Firmware Samsung exynos 9110 Firmware Samsung exynos 1330 Firmware Samsung exynos 1330 Samsung exynos Modem 5123 Firmware Samsung exynos 1280 Samsung exynos 1480 Firmware Samsung exynos Modem 5300 Samsung exynos 1380 Samsung exynos Modem 5123 Samsung Samsung exynos 2100 Samsung exynos 1380 Firmware Samsung exynos 2400 Samsung exynos 9110 |
|
CPE | cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2100_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2100:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5123:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5300:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_9110:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1330:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9110_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* |
|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory |
03 Dec 2024, 14:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-1284 |
02 Dec 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-02 20:15
Updated : 2025-07-01 15:00
NVD link : CVE-2024-39343
Mitre link : CVE-2024-39343
CVE.ORG link : CVE-2024-39343
JSON object : View
Products Affected
samsung
- exynos_modem_5123_firmware
- exynos_1380_firmware
- exynos_1330
- exynos_1330_firmware
- exynos_1380
- exynos_modem_5300
- exynos_1480_firmware
- exynos_modem_5123
- exynos_9110_firmware
- exynos_2100
- exynos_9110
- exynos_2400_firmware
- exynos_1280
- exynos_1480
- exynos_modem_5300_firmware
- exynos_2400
- exynos_1280_firmware
- exynos_2100_firmware
CWE
CWE-1284
Improper Validation of Specified Quantity in Input