CVE-2023-31116
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-31116 is a newly identified vulnerability affecting Samsung Exynos Modem 5123 and 5300, specifically the Shannon RCS component. This issue results from an incorrect default permission, allowing unintended querying of RCS capability through a crafted application. An attacker could exploit this vulnerability to gain unauthorized access to RCS functionality, posing a potential risk to user privacy and security. Samsung is encouraged to release a patch to address this issue promptly. Users are advised to apply updates as soon as they become available to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Samsung