First published: Wed Nov 06 2024(Updated: )
Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Samsung Galaxy S24 Firmware | <2024-09 | |
Samsung Galaxy S24 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49409 is classified as a high-severity vulnerability due to its potential for local attackers to exploit out-of-bounds memory write.
To fix CVE-2024-49409, users should update their Samsung Galaxy S24 to the firmware released in September 2024 or later.
CVE-2024-49409 affects Samsung Galaxy S24 devices running firmware versions prior to the September 2024 update.
CVE-2024-49409 can be exploited by local attackers with system privileges to write out-of-bounds memory.
There are no known workarounds for CVE-2024-49409; the only solution is to update to the patched firmware.