An issue was discovered in Samsung Mobile Processor and Modem Exynos 9820, 9825, 980, 990, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W1000, Modem 5123, Modem 5300, Modem 5400. UE does not limit the number of attempts for the RRC Setup procedure in the 5G SA, leading to a denial of service (battery-drain attack).
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
History
20 Jun 2025, 16:01
Type | Values Removed | Values Added |
---|---|---|
First Time |
Samsung exynos 1080
Samsung exynos 1280 Firmware Samsung exynos 1480 Firmware Samsung Samsung exynos 9825 Samsung exynos 990 Firmware Samsung exynos 9820 Firmware Samsung exynos 980 Samsung exynos W1000 Firmware Samsung exynos Modem 5300 Firmware Samsung exynos Modem 5123 Firmware Samsung exynos 1280 Samsung exynos 9110 Samsung exynos 1330 Firmware Samsung exynos Modem 5123 Samsung exynos Modem 5400 Samsung exynos 2200 Samsung exynos 980 Firmware Samsung exynos Modem 5400 Firmware Samsung exynos W1000 Samsung exynos 1330 Samsung exynos 2400 Samsung exynos 2100 Samsung exynos 9820 Samsung exynos 1080 Firmware Samsung exynos 990 Samsung exynos 9110 Firmware Samsung exynos 2400 Firmware Samsung exynos 2100 Firmware Samsung exynos 9825 Firmware Samsung exynos 2200 Firmware Samsung exynos 1380 Firmware Samsung exynos 1480 Samsung exynos 1380 Samsung exynos Modem 5300 |
|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory | |
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-46921/ - Vendor Advisory | |
References | () https://github.com/asset-group/5ghoul-5g-nr-attacks/tree/master - Product | |
CPE | cpe:2.3:h:samsung:exynos_9820:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5300:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_980_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5123:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_980:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_modem_5400:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_990:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w1000:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2100_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9820_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9110_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_9825_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2100:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_9110:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_990_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1080:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_modem_5400_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_9825:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w1000_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1330:-:*:*:*:*:*:*:* |
31 Jan 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
References |
|
|
CWE | CWE-770 | |
Summary |
|
13 Jan 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-13 19:15
Updated : 2025-06-20 16:01
NVD link : CVE-2024-46921
Mitre link : CVE-2024-46921
CVE.ORG link : CVE-2024-46921
JSON object : View
Products Affected
samsung
- exynos_w1000_firmware
- exynos_modem_5123_firmware
- exynos_modem_5123
- exynos_9825_firmware
- exynos_990
- exynos_modem_5400_firmware
- exynos_1280_firmware
- exynos_1380_firmware
- exynos_1330
- exynos_1480
- exynos_1480_firmware
- exynos_1330_firmware
- exynos_modem_5400
- exynos_980
- exynos_9820_firmware
- exynos_modem_5300_firmware
- exynos_2100
- exynos_9110
- exynos_9820
- exynos_1080
- exynos_1380
- exynos_9825
- exynos_980_firmware
- exynos_1280
- exynos_2200
- exynos_2100_firmware
- exynos_1080_firmware
- exynos_2200_firmware
- exynos_2400
- exynos_w1000
- exynos_990_firmware
- exynos_9110_firmware
- exynos_modem_5300
- exynos_2400_firmware
CWE
CWE-770
Allocation of Resources Without Limits or Throttling