An issue was discovered in Samsung Semiconductor Mobile Processor and Modem Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, Exynos Modem 5300. The baseband software does not properly check a pointer specified by the SM (Session Management module), which can lead to Denial of Service (Untrusted Pointer Dereference).
Conclusion & alert: CVE-2024-25074 is rated Moderate Risk (49.4/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 0.77%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-11-21 | 0.42% | 0.77% | +0.36% |
| 2 | 2025-11-18 | 0.77% | 0.42% | -0.36% |
| 3 | 2025-11-01 | — | 0.77% | — |
Full EPSS history (10 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.9 | 3.1 | MEDIUM |
|
2.2 | 3.6 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| samsung | exynos_9820_firmware | — | cpe:2.3:o:samsung:exynos_9820_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_9825_firmware | — | cpe:2.3:o:samsung:exynos_9825_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_980_firmware | — | cpe:2.3:o:samsung:exynos_980_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_990_firmware | — | cpe:2.3:o:samsung:exynos_990_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_850_firmware | — | cpe:2.3:o:samsung:exynos_850_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_1080_firmware | — | cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_2100_firmware | — | cpe:2.3:o:samsung:exynos_2100_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_2200_firmware | — | cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_1280_firmware | — | cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_1380_firmware | — | cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_1330_firmware | — | cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_9110_firmware | — | cpe:2.3:o:samsung:exynos_9110_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_w920_firmware | — | cpe:2.3:o:samsung:exynos_w920_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_w930_firmware | — | cpe:2.3:o:samsung:exynos_w930_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_modem_5123_firmware | — | cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:* |
| samsung | exynos_modem_5300_firmware | — | cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:* |