Vulnerability Details CVE-2024-27386
A vulnerability was discovered in the slsi_handle_nan_rx_event_log_ind function in Samsung Mobile Processor Exynos 1380 and Exynos 1480 related to no input validation check on tag_len for tx coming from userspace, which can lead to heap overwrite.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.1%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2024-27386
-
cpe:2.3:h:samsung:exynos_1380:-
-
cpe:2.3:h:samsung:exynos_1480:-
-
cpe:2.3:o:samsung:exynos_1380_firmware:-
-
cpe:2.3:o:samsung:exynos_1480_firmware:-