CVE-2023-37368: Null Pointer Dereference
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos Mobile Processor, Automotive Processor, and Modem - Exynos 9810, Exynos 9610, Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123). In the Shannon MM Task, Missing validation of a NULL pointer can cause abnormal termination via a malformed NR MM packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-37368?
The severity of CVE-2023-37368 is high (CVSS score of 7.5).
Which Samsung processors are affected by CVE-2023-37368?
Samsung Exynos Mobile Processor, Automotive Processor, and Modem are affected by CVE-2023-37368.
What is the vulnerability ID for Samsung Exynos 9810 firmware?
The vulnerability ID for Samsung Exynos 9810 firmware is CVE-2023-37368.
How can I fix the vulnerability in Samsung Exynos processors?
Please refer to the official Samsung website for product security updates and patches.
Is Samsung Exynos 9610 vulnerable to CVE-2023-37368?
No, Samsung Exynos 9610 is not vulnerable to CVE-2023-37368.