CVE-2024-49415

Published Dec 3, 2024

Last updated a month ago

Overview

Description
Out-of-bound write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code.
Source
mobile.security@samsung.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.1
Impact score
5.9
Exploitability score
2.2
Vector string
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

17

  1. 𝐙𝐞𝐫𝐨-𝐂𝐥𝐢𝐜𝐤 𝐕𝐮𝐥𝐧𝐞𝐫𝐚𝐛𝐢𝐥𝐢𝐭𝐲 𝐢𝐧 𝐒𝐚𝐦𝐬𝐮𝐧𝐠 𝐑𝐂𝐒 𝐄𝐱𝐩𝐨𝐬𝐞𝐬 𝐌𝐢𝐥𝐥𝐢𝐨𝐧𝐬 𝐨𝐟 𝐃𝐞𝐯𝐢𝐜𝐞𝐬 𝐭𝐨 𝐑𝐞𝐦𝐨𝐭𝐞 𝐀𝐭𝐭𝐚𝐜𝐤𝐬 SEOUL, South Korea, Jan. 11, 2025 — A recently uncovered zero-click vulnerability, identified as CVE-2024-49415, has… htt

    @techuncut_com

    11 Jan 2025

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2024-49415 : Samsung Android devices Impacted #CVE-2024-39415 #Samsung https://t.co/8Wngs2Z7zn

    @pravin_karthik

    11 Jan 2025

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Threat Alert: Google Project Zero Researcher Uncovers Zero-Click Exploit Targeting Samsung Dev CVE-2024-49413 CVE-2024-49415 Severity: ⚠️ Critical Maturity: 💢 Emerging Learn more: https://t.co/xaY5o4Y29h #CyberSecurity #ThreatIntel #InfoSec

    @fletch_ai

    11 Jan 2025

    34 Impressions

    0 Retweets

    0 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  4. Un investigador del Proyecto Zero de Google descubre un exploit de clic cero que ataca a dispositivos Samsung ➡️ CVE-2024-49415 afecta Google Messages que usan RCS https://t.co/86tvsJJPj6 https://t.co/dZfLCBxYJp

    @elhackernet

    10 Jan 2025

    3293 Impressions

    19 Retweets

    69 Likes

    7 Bookmarks

    0 Replies

    0 Quotes

  5. فريق قوقل الأمني كشف عن تفاصيل ثغرة خطيرة في هواتف سامسونج من إصدار آندرويد11 الى14 CVE-2024-49415: ثغرة في مكتبة فك ترميز ملفات الصوت تمكن المهاجم من تنفيذ تعليمات برمجية عن بُعد بدون تفاعل من المستخدم! استغلاها يتم بإرسال رسالة صوتية ضارة عبر تطبيق رسائل قوقل، حيث يتم فك… htt

    @masfbr

    10 Jan 2025

    1064 Impressions

    0 Retweets

    2 Likes

    2 Bookmarks

    1 Reply

    0 Quotes

  6. Critical security flaw in Samsung smartphones' Monkey's Audio decoder patched. High risk CVE-2024-49415. Read more: https://t.co/4f5DoraCs6

    @threatlight

    10 Jan 2025

    5 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. Without even opening a file, your #Samsung phone is at risk of remote code execution. Sounds alarming? That’s exactly what CVE-2024-49415, a critical #vulnerability in Samsung’s Monkey's Audio (APE) decoder, enables on devices running #Android 12, 13, and 14. Details:… https://t

    @secure_blink

    10 Jan 2025

    49 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Scoperta una vulnerabilità zero-click in un decoder audio APE su smartphone #Samsung, CVE-2024-49415 che interessa le versioni Android 12, 13 e 14 Per risolvere il problema, è necessario installare l'aggiornamento di sicurezza di dicembre 2024 https://t.co/EjJ7OruoCT

    @techworldaleant

    10 Jan 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. ⚠️ A high-severity vulnerability in Samsung's Monkey's Audio decoder (CVE-2024-49415) is putting millions of devices at risk. Read details here: https://t.co/v9RahWYVG0

    @TheHackersNews

    10 Jan 2025

    41923 Impressions

    52 Retweets

    111 Likes

    20 Bookmarks

    1 Reply

    3 Quotes

  10. “Samsung”un mobil cihazlarında boşluq (CVE-2024-49415) aşkar olunub. #ETX #certaz #cybersecurity #kibertəhlükəsizlik #xəbərdarlıq https://t.co/pTCl6CbVyP

    @CERTAzerbaijan

    27 Dec 2024

    45 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. 📱 Galaxy S24シリーズに重要なセキュリティアップデート配信開始! 6件の重大レベルの修正と28件の高レベルのセキュリティ強化を含む大規模アップデート 特に注目は深刻な脆弱性「CVE-2024-49415」への対応 リモートコード実行のリスクから端末を保護 対象機種: ・Galaxy S24 ・Galaxy S24 Plus… https://t.co/SR894frkn3 https://t.co/VG5GkN7Nhi

    @TechTrendsJP

    10 Dec 2024

    196 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. CVE-2024-49415 (CVSS:8.1, HIGH) is Awaiting Analysis. Out-of-bound write in https://t.co/Wsc8eZjK0X prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code...https://t.co/kVT6v3OsDm #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    8 Dec 2024

    41 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes