CVE-2024-49408
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Out-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Affected (1)
Products: Samsung: Galaxy S24 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2024-09 |
| Running on/with | Platform Versions |
|---|---|
Samsung Galaxy S24 | All versions |
References (1)
Source: mobile.security@samsung.com
Vendor Advisory
Timeline
No history available yet.