CVE-2023-31114
CVSS 3.1 Score 9.1 of 10 (high)
Details
Published Jun 7, 2023
Updated: Jan 7, 2025
CWE ID 669
Summary
CVE-2023-31114 is a vulnerability affecting the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. This issue permits unintended querying of the SIM status through a specially crafted application. The vulnerability arises due to an incorrect resource transfer between spheres within the component. Successful exploitation could potentially expose sensitive information related to the SIM card status, posing a security risk. Samsung is advised to release a patch to address this issue promptly.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Samsung