CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
58.7%
An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123. An intra-object overflow in the 5G SM message codec can occur due to insufficient parameter validation when decoding reserved options.
Vendor | Product | Version | CPE |
---|---|---|---|
samsung | exynos_1280_firmware | - | cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* |
samsung | exynos_1280 | - | cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* |
samsung | exynos_2200_firmware | - | cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:* |
samsung | exynos_2200 | - | cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:* |
samsung | exynos_modem_5123_firmware | - | cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:* |
samsung | exynos_modem_5123 | - | cpe:2.3:h:samsung:exynos_modem_5123:-:*:*:*:*:*:*:* |
samsung | exynos_modem_5300_firmware | - | cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:* |
samsung | exynos_modem_5300 | - | cpe:2.3:h:samsung:exynos_modem_5300:-:*:*:*:*:*:*:* |
samsung | exynos_auto_t5123_firmware | - | cpe:2.3:o:samsung:exynos_auto_t5123_firmware:-:*:*:*:*:*:*:* |
samsung | exynos_auto_t5123 | - | cpe:2.3:h:samsung:exynos_auto_t5123:-:*:*:*:*:*:*:* |
packetstormsecurity.com/files/171400/Shannon-Baseband-NrSmPcoCodec-Intra-Object-Overflow.html
googleprojectzero.blogspot.com/2023/03/multiple-internet-to-baseband-remote-rce.html
semiconductor.samsung.com/processor/mobile-processor/
semiconductor.samsung.com/processor/modem/
semiconductor.samsung.com/support/quality-support/product-security-updates/
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
58.7%