Vulnerability

CVE-2023-36481

Component: CELLULAR
Location: FIRMWARE
Buffer copy without checking input size during PPP communication in Shannon BaseBand Improper handling of length parameter inconsistency can cause infinite loop.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

7.5

Severity (Android)

N/A

Chipsets

11

Devices

190

Affected Hardware

NameAlso known asManufacturer
Exynos 850
S5E3830
SAMSUNG LSI
Exynos 980
S5E9630
SAMSUNG LSI
Exynos 1080
S5E9815
SAMSUNG LSI
Exynos 1280
S5E8825
SAMSUNG LSI
Exynos 1330
S5E8535
SAMSUNG LSI
Exynos 1380
S5E8835
SAMSUNG LSI
Exynos 2100
S5E9840
SAMSUNG LSI
Exynos 2200
S5E9925
SAMSUNG LSI
Exynos 9610
SAMSUNG LSI
Exynos 9810
S5E9810
SAMSUNG LSI
11 of 11 row(s) shown.

Rows per page

Page 1 of 2

Timeline

Introduced (est):
Jan 1, 2018
Reported:
Apr 12, 2023
Advisory Published:
Aug 1, 2023
CVE Published:
Aug 28, 2023
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter