HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2023-31115

CVSS 7.5v3.1pub. 2023-06-07upd. 2025-01-07

An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause changes to the activation mode of RCS via a crafted application.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
  • Samsung Exynos 5123

    HW
    Samsung
    all versions
  • Samsung Exynos 5123 Firmware

    OS
    Samsung
    all versions
  • Samsung Exynos 5300

    HW
    Samsung
    all versions
  • Samsung Exynos 5300 Firmware

    OS
    Samsung
    all versions
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2023-31116CRITICAL9.8PL ✓same product

Nieprawidłowe uprawnienia domyślne w Shannon RCS (Samsung Exynos Modem)

CVE-2023-31114CRITICAL9.1PL ✓same product

Nieprawidłowy transfer zasobów w Samsung Exynos Modem — nieautoryzowane zapytania o status SIM

CVE-2023-29087MEDIUM6.8same product

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 51...

CVE-2023-29088MEDIUM6.8same product

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 51...

CVE-2023-29089MEDIUM6.8same product

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 51...