← Back

CVE-2024-49408

nvd nist
Published: Nov 6, 2024Modified: Nov 13, 2024

JSON object

Loading...
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD

Description

Out-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.

Affected (1)

1 product
Galaxy S24 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2024-09
Running on/withPlatform Versions
Samsung
Galaxy S24
All versions

References (1)

Source: mobile.security@samsung.com
Vendor Advisory

Timeline

No history available yet.