CVE-2024-46919

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jan 13, 2025
CWE ID 787

Summary

CVE-2024-46919 is a newly identified vulnerability affecting various Samsung Mobile Processors, including Exynos 9820, 9825, 980, 990, 850, 1080, 2100, and 1280. The issue stems from a missing length check, resulting in a stack out-of-bounds write during the loadOutputBuffers process. This vulnerability could potentially be exploited by attackers to execute arbitrary code or cause a denial-of-service condition, posing a significant risk to affected devices. Samsung is advised to release a patch to address this issue promptly to protect users from potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share