An issue was discovered in Samsung Mobile Processor, and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the NAS (Non-Access-Stratum) module. This can lead to bypass of authentication.
References
Link | Resource |
---|---|
https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
History
27 Jun 2024, 16:42
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:samsung:exynos_9825:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_980:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5123:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1330:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1080:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9820_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_990:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_850:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_990_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9825_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_9820:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2100:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_980_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2100_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5300:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_850_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:* |
|
CWE | CWE-287 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
First Time |
Samsung exynos 850
Samsung exynos 1280 Firmware Samsung exynos 9825 Samsung exynos 2100 Samsung exynos 9825 Firmware Samsung exynos 1080 Samsung exynos 1380 Firmware Samsung exynos 1330 Firmware Samsung exynos Modem 5123 Firmware Samsung exynos Modem 5300 Firmware Samsung exynos 1080 Firmware Samsung exynos 850 Firmware Samsung Samsung exynos Modem 5123 Samsung exynos 2200 Firmware Samsung exynos 1330 Samsung exynos Modem 5300 Samsung exynos 2200 Samsung exynos 1380 Samsung exynos 2100 Firmware Samsung exynos 990 Firmware Samsung exynos 980 Samsung exynos 9820 Firmware Samsung exynos 9820 Samsung exynos 990 Samsung exynos 980 Firmware Samsung exynos 1280 |
|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory |
25 Jun 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) An issue was discovered in Samsung Mobile Processor, and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check format types specified by the NAS (Non-Access-Stratum) module. This can lead to bypass of authentication. |
06 Jun 2024, 14:17
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
05 Jun 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-05 19:15
Updated : 2024-06-27 16:42
NVD link : CVE-2023-50804
Mitre link : CVE-2023-50804
CVE.ORG link : CVE-2023-50804
JSON object : View
Products Affected
samsung
- exynos_2100
- exynos_9825
- exynos_2100_firmware
- exynos_modem_5123_firmware
- exynos_9820
- exynos_2200_firmware
- exynos_850
- exynos_modem_5300_firmware
- exynos_1280
- exynos_980_firmware
- exynos_9825_firmware
- exynos_1380
- exynos_1330_firmware
- exynos_modem_5123
- exynos_9820_firmware
- exynos_990
- exynos_990_firmware
- exynos_1080_firmware
- exynos_1080
- exynos_2200
- exynos_1330
- exynos_980
- exynos_modem_5300
- exynos_850_firmware
- exynos_1380_firmware
- exynos_1280_firmware
CWE
CWE-287
Improper Authentication