A vulnerability was discovered in the slsi_handle_nan_rx_event_log_ind function in Samsung Mobile Processor Exynos 1380 and Exynos 1480 related to no input validation check on tag_len for tx coming from userspace, which can lead to heap overwrite.
References
Configurations
No configuration.
History
21 Nov 2024, 09:04
Type | Values Removed | Values Added |
---|---|---|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - | |
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-27386/ - |
01 Aug 2024, 13:48
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-20 |
11 Jul 2024, 13:06
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
09 Jul 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-09 21:15
Updated : 2024-11-21 09:04
NVD link : CVE-2024-27386
Mitre link : CVE-2024-27386
CVE.ORG link : CVE-2024-27386
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation