CVE-2023-30702

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
10/08/2023
Last modified:
07/11/2023

Description

Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:samsung:galaxy_book_go_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:galaxy_book_go:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:galaxy_book_go_5g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:galaxy_book_go_5g:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:galaxy_book2_go_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:galaxy_book2_go:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:galaxy_book2_pro_360_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:galaxy_book2_pro_360:-:*:*:*:*:*:*:*