CVE-2024-31958

An issue was discovered in Samsung Mobile Processor EExynos 2200, Exynos 1480, Exynos 2400. It lacks a check for the validation of native handles, which can result in an Out-of-Bounds Write.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*

History

26 Jun 2025, 20:46

Type Values Removed Values Added
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory
CPE cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
First Time Samsung exynos 2400
Samsung exynos 2400 Firmware
Samsung
Samsung exynos 2200
Samsung exynos 1480
Samsung exynos 2200 Firmware
Samsung exynos 1480 Firmware

21 Nov 2024, 09:14

Type Values Removed Values Added
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ -

29 Oct 2024, 21:35

Type Values Removed Values Added
CWE CWE-354
Summary
  • (es) Se descubrió un problema en el procesador móvil Samsung EExynos 2200, Exynos 1480, Exynos 2400. Carece de una verificación para la validación de identificadores nativos, lo que puede resultar en una escritura fuera de los límites.

07 Jun 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-07 17:15

Updated : 2025-06-26 20:46


NVD link : CVE-2024-31958

Mitre link : CVE-2024-31958

CVE.ORG link : CVE-2024-31958


JSON object : View

Products Affected

samsung

  • exynos_2400_firmware
  • exynos_2200
  • exynos_2400
  • exynos_2200_firmware
  • exynos_1480_firmware
  • exynos_1480
CWE
CWE-354

Improper Validation of Integrity Check Value