An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_followup_get_nl_params(), there is no input validation check on hal_req->service_specific_info_len coming from userspace, which can lead to a heap overwrite.
References
Link | Resource |
---|---|
https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-06-05T18:41:01.845245
Reserved:
Link: CVE-2024-27371
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-06-05T19:15:12.687
Modified: 2024-06-27T16:40:45.063
Link: CVE-2024-27371
JSON object: View
Redhat Information
No data.
CWE