First published: Thu Aug 10 2023(Updated: )
Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.
Credit: mobile.security@samsung.com mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy Book Go Firmware | ||
Samsung Galaxy Book Go | ||
Samsung Galaxy Book Go 5g Firmware | ||
Samsung Galaxy Book Go 5g | ||
Samsung Galaxy Book2 Go Firmware | ||
Samsung Galaxy Book2 Go | ||
Samsung Galaxy Book2 Pro 360 Firmware | ||
Samsung Galaxy Book2 Pro 360 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID for this vulnerability is CVE-2023-30702.
The severity of CVE-2023-30702 is high with a CVSS score of 7.8.
CVE-2023-30702 affects Samsung Galaxy Book Go Firmware, Samsung Galaxy Book Go 5g Firmware, Samsung Galaxy Book2 Go Firmware, and Samsung Galaxy Book2 Pro 360 Firmware.
A local attacker can exploit CVE-2023-30702 by triggering a stack overflow vulnerability in SSHDCPAPP TA prior to the Samsung Electronics System Hardware Update on Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go, and Galaxy book2 Pro 360.
No, Samsung Galaxy Book Go and Samsung Galaxy Book Go 5G are not vulnerable to CVE-2023-30702.