CVE-2024-31960: Use After Free
Published Sep 10, 2024
·Updated
An issue was discovered in Samsung Mobile Processor Exynos 1480, Exynos 2400. The xclipse amdgpu driver has a reference count bug. This can lead to a use after free.
Affected Software
4 affected components
All of the following
samsung Exynos 1480 Firmware
samsung Exynos 1480
All of the following
Samsung Exynos 2400 Firmware
Samsung Exynos 2400
Event History
Sep 10, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-31960?
The severity of CVE-2024-31960 is considered high due to the potential for use after free vulnerabilities.
2
How do I fix CVE-2024-31960?
To fix CVE-2024-31960, update the firmware of the Samsung Exynos 1480 or Exynos 2400 processors to the latest available version.
3
What products are affected by CVE-2024-31960?
CVE-2024-31960 affects Samsung Exynos 1480 and Exynos 2400 processors.
4
What is a reference count bug in CVE-2024-31960?
A reference count bug in CVE-2024-31960 occurs when the xclipse amdgpu driver improperly manages memory references, potentially leading to memory access errors.
5
Can CVE-2024-31960 be exploited remotely?
CVE-2024-31960 may potentially be exploited depending on the system configuration and exposure to untrusted inputs.