CVE-2024-55568
BaseFortify
Publication date: 2025-10-20
Last updated on: 2025-11-04
Assigner: MITRE
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| samsung | exynos_1080_firmware | * |
| samsung | exynos_1080 | * |
| samsung | exynos_1330_firmware | * |
| samsung | exynos_1330 | * |
| samsung | exynos_1380_firmware | * |
| samsung | exynos_1380 | * |
| samsung | exynos_1480_firmware | * |
| samsung | exynos_1480 | * |
| samsung | exynos_2100_firmware | * |
| samsung | exynos_2100 | * |
| samsung | exynos_2200_firmware | * |
| samsung | exynos_2200 | * |
| samsung | exynos_2400_firmware | * |
| samsung | exynos_2400 | * |
| samsung | exynos_850_firmware | * |
| samsung | exynos_850 | * |
| samsung | exynos_980_firmware | * |
| samsung | exynos_980 | * |
| samsung | exynos_990_firmware | * |
| samsung | exynos_990 | * |
| samsung | exynos_1280_firmware | * |
| samsung | exynos_1280 | * |
| samsung | exynos_9110_firmware | * |
| samsung | exynos_9110 | * |
| samsung | exynos_w1000_firmware | * |
| samsung | exynos_w1000 | * |
| samsung | exynos_w920_firmware | * |
| samsung | exynos_w920 | * |
| samsung | exynos_w930_firmware | * |
| samsung | exynos_w930 | * |
| samsung | exynos_modem_5400_firmware | * |
| samsung | exynos_modem_5400 | * |
| samsung | exynos_modem_5300_firmware | * |
| samsung | exynos_modem_5300 | * |
| samsung | exynos_modem_5123_firmware | * |
| samsung | exynos_modem_5123 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-400 | The product does not properly control the allocation and maintenance of a limited resource. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in multiple Samsung Exynos processors and modems due to the absence of a null pointer check in the UL2 component. When an attacker sends malformed MM packets to the affected device, it can trigger a Denial of Service (DoS) condition, causing the device or component to become unavailable or unresponsive. [1]
How can this vulnerability impact me? :
The vulnerability can cause a Denial of Service (DoS) on devices using the affected Samsung Exynos processors and modems. This means an attacker could disrupt the normal operation of your device, potentially causing it to crash or become unresponsive, impacting availability. [1]