📦 Exynos Modem 5123 Firmware

by Samsung

🔍 What is Exynos Modem 5123 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-27891

CRITICAL CVSS 9.1 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to perform out-of-bounds reads via malformed NAS packets. This affects Samsung mobile devices, wearables, and modems usi...

CVE-2025-59439

HIGH CVSS 7.5 Feb 3, 2026

A vulnerability in Samsung Exynos processors and modems allows denial of service attacks through improper handling of NAS Registration messages. Attackers can exploit this to crash affected devices by...

CVE-2024-55568

HIGH CVSS 7.5 Oct 20, 2025

A missing NULL pointer check in Samsung Exynos processors allows attackers to cause Denial of Service by sending malformed MM (Mobility Management) packets. This affects Samsung mobile devices, wearab...

CVE-2025-26785

HIGH CVSS 7.5 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length validation. This affects Samsung mobile devices, ...

CVE-2024-52923

HIGH CVSS 7.5 Mar 6, 2025

A boundary check vulnerability in Samsung's NRMM component for multiple Exynos processors allows denial of service attacks. Attackers can exploit this by sending specially crafted DL NAS Transport mes...

CVE-2024-52924

HIGH CVSS 7.5 Mar 6, 2025

This vulnerability in Samsung Exynos processors allows attackers to execute arbitrary code by sending specially crafted Registration Accept messages. It affects Samsung mobile devices, wearables, and ...

CVE-2024-39890

HIGH CVSS 8.1 Dec 2, 2024

A memory corruption vulnerability in Samsung Exynos baseband software allows attackers to write data beyond allocated buffer boundaries by exploiting improper length validation in Call Control message...

CVE-2024-39343

HIGH CVSS 7.0 Dec 2, 2024

A vulnerability in Samsung Exynos baseband software allows denial of service attacks by exploiting improper length validation in the Mobility Management module. This affects Samsung mobile devices and...

CVE-2024-29153

HIGH CVSS 8.1 Jul 9, 2024

This vulnerability in Samsung Exynos processors and modems allows attackers to exploit incorrect LTE NAS message authorization, forcing devices to downgrade to older network generations and enabling r...

CVE-2023-50806

HIGH CVSS 8.4 Jul 9, 2024

This vulnerability allows out-of-bounds heap buffer access in the SIM Proactive Command handler of affected Samsung processors and modems. Attackers could potentially execute arbitrary code, read sens...

CVE-2023-49928

HIGH CVSS 7.5 Jun 5, 2024

This vulnerability in Samsung Exynos baseband software allows improper state checking in RRC (Radio Resource Control) protocols, potentially leading to sensitive information disclosure. It affects Sam...

CVE-2023-41112

HIGH CVSS 7.1 Nov 8, 2023

A buffer overflow vulnerability in Samsung Exynos processors allows attackers to cause abnormal termination (crash) of mobile devices by sending specially crafted data to the RLC task and module. This...

CVE-2023-26496

HIGH CVSS 8.6 Mar 23, 2023

This vulnerability allows memory corruption in Samsung baseband chipsets due to improper parameter length checking while parsing SDP fmtp attributes. Attackers could potentially execute arbitrary code...

CVE-2023-26497

HIGH CVSS 8.6 Mar 21, 2023

This vulnerability in Samsung baseband chipsets allows memory corruption when processing Session Description Negotiation for Video Configuration Attribute. Attackers could potentially execute arbitrar...

CVE-2023-26076

HIGH CVSS 7.6 Mar 13, 2023

This vulnerability allows remote attackers to execute arbitrary code on affected Samsung mobile devices via a crafted 5G network message. It affects Samsung Exynos chipsets used in smartphones and aut...

CVE-2023-26073

HIGH CVSS 7.6 Mar 13, 2023

A heap-based buffer overflow vulnerability in Samsung's 5G MM message codec allows remote code execution on affected mobile devices. Attackers can exploit this by sending specially crafted 5G network ...

CVE-2023-26074

HIGH CVSS 7.6 Mar 13, 2023

This vulnerability allows remote attackers to execute arbitrary code on affected Samsung mobile devices via a heap-based buffer overflow in the 5G modem firmware. Attackers can exploit this by sending...

CVE-2025-22377

MEDIUM CVSS 6.5 May 27, 2025

A heap-based out-of-bounds write vulnerability in Samsung Exynos processors' GPRS protocol implementation allows attackers to write data beyond allocated memory boundaries. This affects Samsung mobile...

CVE-2024-56427

MEDIUM CVSS 6.5 May 14, 2025

This vulnerability in Samsung Exynos processors allows attackers to trigger out-of-bounds memory access by sending malformed RRC (Radio Resource Control) packets. This affects mobile devices and weara...

CVE-2025-26784

MEDIUM CVSS 6.5 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length validation. This affects Samsung mobile devices, ...

CVE-2024-48883

MEDIUM CVSS 4.3 Jan 13, 2025

This vulnerability in Samsung Exynos processors allows information leakage when a malformed uplink scheduling message is incorrectly handled. It affects Samsung mobile devices, wearables, and modems u...

CVE-2024-45185

MEDIUM CVSS 5.1 Nov 4, 2024

This vulnerability allows attackers to execute arbitrary code or cause denial of service on affected Samsung Exynos processors due to a heap overflow in GPRS protocol handling. It affects Samsung mobi...

CVE-2024-45184

MEDIUM CVSS 6.2 Oct 11, 2024

This vulnerability is a heap buffer overflow in Samsung's USAT component affecting multiple Exynos chipsets used in mobile devices, wearables, and modems. An attacker could exploit this to cause a den...

CVE-2024-25074

MEDIUM CVSS 5.9 Sep 10, 2024

A pointer dereference vulnerability in Samsung Exynos baseband software allows attackers to cause denial of service by exploiting improper pointer validation in the Session Management module. This aff...

CVE-2023-49927

MEDIUM CVSS 5.3 Jun 5, 2024

A vulnerability in Samsung Exynos baseband software allows improper format type checking in RRC (Radio Resource Control) messages, potentially leading to unencrypted communications. This affects Samsu...

CVE-2024-29152

MEDIUM CVSS 5.9 Jun 4, 2024

A vulnerability in Samsung Exynos baseband software allows improper state checking of RRC Reconfiguration messages, potentially leading to sensitive information disclosure. This affects Samsung mobile...