CVE-2024-29152: High severity Samsung Exynos 980 Firmware vulnerability
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 2400, Exynos Modem 5123, and Exynos Modem 5300. The baseband software does not properly check states specified by the RRC (Radio Resource Control) Reconfiguration message. This can lead to disclosure of sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-29152?
CVE-2024-29152 has a high severity rating due to its potential impact on baseband security.
How do I fix CVE-2024-29152?
To fix CVE-2024-29152, update to the latest firmware provided by Samsung for the affected Exynos processors.
What devices are affected by CVE-2024-29152?
CVE-2024-29152 affects multiple Samsung Exynos processors, including Exynos 980, 990, 1080, 2100, and others.
What are the potential consequences of exploiting CVE-2024-29152?
Exploiting CVE-2024-29152 could allow attackers to compromise the integrity and confidentiality of affected devices.
Is there a workaround for CVE-2024-29152?
Currently, the recommended action for CVE-2024-29152 is to apply the necessary firmware updates to mitigate the vulnerability.