Vulnerabilities > Samsung > Exynos Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-03-16 CVE-2023-21455 Unspecified vulnerability in Samsung Exynos Firmware
Improper authorization implementation in Exynos baseband prior to SMR Mar-2023 Release 1 allows incorrect handling of unencrypted message.
network
low complexity
samsung
critical
9.1
2022-12-08 CVE-2022-39901 Improper Authentication vulnerability in Samsung Exynos Firmware
Improper authentication in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to disable the network traffic encryption between UE and gNodeB.
low complexity
samsung CWE-287
6.5
2022-12-08 CVE-2022-39902 Unspecified vulnerability in Samsung Exynos Firmware
Improper authorization in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to get sensitive information including IMEI via emergency call.
network
low complexity
samsung
7.5
2022-11-09 CVE-2022-39881 Out-of-bounds Read vulnerability in Samsung Exynos Firmware
Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR Sep-2022 Release allows remote attacker to read out of bounds memory.
network
low complexity
samsung CWE-125
critical
9.1