Cyber Posture

CVE-2024-50600

High

Published: 06 March 2025

Published
06 March 2025
Modified
01 July 2025
KEV Added
Patch
CVSS Score 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score 0.0019 40.0th percentile
Risk Priority 15 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2024-50600 is a high-severity Out-of-bounds Read (CWE-125) vulnerability in Samsung Exynos 980 Firmware. Its CVSS base score is 7.5 (High).

Operationally, exploitation aligns with the MITRE ATT&CK technique Application or System Exploitation (T1499.004); ranked at the 40.0th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

The strongest mitigations our analysis identified are NIST 800-53 SI-10 (Information Input Validation) and SI-16 (Memory Protection).

Threat & Defense at a Glance

What attackers do: exploitation maps to Application or System Exploitation (T1499.004). What defenders deploy: see the NIST 800-53 controls recommended below.
Threat & Defense Details

Mitigating Controls (NIST 800-53 r5)AI

prevent

Directly addresses the lack of boundary check by requiring validation of malformed Wi-Fi driver inputs to prevent out-of-bounds access.

prevent

Mandates timely remediation through Samsung-provided patches for the specific flaw in Exynos Wi-Fi drivers' STOP_KEEP_ALIVE_OFFLOAD function.

prevent

Implements memory protections like address space layout randomization or stack canaries to restrict the impact of out-of-bounds access in the Wi-Fi driver.

MITRE ATT&CK Enterprise TechniquesAI

T1499.004 Application or System Exploitation Impact
Adversaries may exploit software vulnerabilities that can cause an application or system to crash and deny availability to users.
Why these techniques?

The vulnerability description explicitly details remote exploitation of a Wi-Fi driver flaw (out-of-bounds access) causing crashes and denial of service on the endpoint, directly mapping to Application or System Exploitation for Endpoint Denial of Service.

Confidence: HIGH · MITRE ATT&CK Enterprise v19.0

NVD Description

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, W920, W930, and W1000. Lack of a boundary check in STOP_KEEP_ALIVE_OFFLOAD leads to out-of-bounds access. An attacker can send a malformed…

more

message to the target through the Wi-Fi driver.

Deeper analysisAI

CVE-2024-50600 is a vulnerability in Samsung Mobile Processor and Wearable Processor models Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, W920, W930, and W1000. It stems from a lack of boundary check in the STOP_KEEP_ALIVE_OFFLOAD functionality within the Wi-Fi driver, resulting in out-of-bounds access (CWE-125). The issue carries a CVSS v3.1 base score of 7.5 (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H), highlighting its potential for significant impact.

A remote attacker without privileges or user interaction can exploit this vulnerability by sending a malformed message to the target device through the Wi-Fi driver. Successful exploitation leads to out-of-bounds access, which disrupts availability by causing crashes or denial of service, though it does not compromise confidentiality or integrity.

Samsung provides product security updates and mitigation guidance on their semiconductor support page at https://semiconductor.samsung.com/support/quality-support/product-security-updates/. Security practitioners should check this resource for patches applicable to affected Exynos processors in Samsung mobile and wearable devices.

Details

CWE(s)

Affected Products

samsung
exynos 980 firmware
all versions
samsung
exynos 850 firmware
all versions
samsung
exynos 1080 firmware
all versions
samsung
exynos 1280 firmware
all versions
samsung
exynos 1330 firmware
all versions
samsung
exynos 1380 firmware
all versions
samsung
exynos 1480 firmware
all versions
samsung
exynos w920 firmware
all versions
samsung
exynos w930 firmware
all versions
samsung
exynos w1000 firmware
all versions

CVEs Like This One

CVE-2025-57835Same product: Samsung Exynos 1080
CVE-2024-52924Same product: Samsung Exynos 1080
CVE-2025-59440Same product: Samsung Exynos 1080
CVE-2025-58349Same product: Samsung Exynos 1080
CVE-2024-52923Same product: Samsung Exynos 1080
CVE-2025-59439Same product: Samsung Exynos 1080
CVE-2025-57834Same product: Samsung Exynos 1080
CVE-2025-52908Same product: Samsung Exynos 1280
CVE-2025-52909Same product: Samsung Exynos 1280
CVE-2025-43706Same product: Samsung Exynos 1080

References