First published: Thu Mar 06 2025(Updated: )
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, W920, W930, and W1000. Lack of a boundary check in STOP_KEEP_ALIVE_OFFLOAD leads to out-of-bounds access. An attacker can send a malformed message to the target through the Wi-Fi driver.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Exynos 980 Firmware | =980 | |
Samsung Exynos 850 Firmware | =850 | |
Samsung Exynos 1080 Firmware | =1080 | |
Samsung Exynos 1280 | =1280 | |
Samsung Exynos 1330 firmware | =1330 | |
Samsung Mobile Processor Exynos 1380 | =1380 | |
Samsung Mobile Processor Exynos 1480 | =1480 | |
Samsung Wearable Processor W920 | =W920 | |
Samsung Wearable Processor W930 | =W930 | |
Samsung Wearable Processor W1000 | =W1000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50600 has been assessed as a high severity vulnerability due to potential out-of-bounds access resulting from a lack of boundary checks.
CVE-2024-50600 affects various Samsung processors including Exynos 980 and multiple wearable processors, allowing attackers to exploit the vulnerability via malformed messages.
To fix CVE-2024-50600, you should apply the latest firmware updates provided by Samsung for affected Exynos processors and wearable devices.
CVE-2024-50600 impacts Samsung mobile processors such as the Exynos 980, 850, 1080, and various wearable processors including the W920 and W930.
Exploitation of CVE-2024-50600 could occur through sending specially crafted messages to vulnerable devices over Wi-Fi.