CVE-2023-31114: Critical severity samsung exynos 5123 firmware vulnerability
Published Jun 7, 2023
·Updated
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause unintended querying of the SIM status via a crafted application.
Affected Software
8 affected components
All of the following
Samsung Exynos 5123 Firmware
Samsung Exynos 5123
All of the following
Samsung Exynos 5300 Firmware
Samsung Exynos 5300
Samsung Exynos 5123 Firmware
Samsung Exynos 5123
Samsung Exynos 5300 Firmware
Samsung Exynos 5300
Event History
Jun 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-31114.
2
What is the severity rating of CVE-2023-31114?
CVE-2023-31114 has a severity rating of 9.1 (Critical).
3
Which Samsung Exynos components are affected by CVE-2023-31114?
The Samsung Exynos Modem 5123 and 5300 are affected by CVE-2023-31114.
4
What is the impact of CVE-2023-31114?
CVE-2023-31114 can cause unintended querying of the SIM status via a crafted application.
5
Where can I find more information about CVE-2023-31114?
You can find more information about CVE-2023-31114 at the following link: [https://semiconductor.samsung.com/support/quality-support/product-security-updates/](https://semiconductor.samsung.com/support/quality-support/product-security-updates/)