SamMobile has affiliate and sponsored partnerships. If you buy something through one of these links, we may earn a commission.

News For You
News For You
Notifications

[Updated] Samsung hasn’t patched a critical bug affecting many Galaxy phones with Exynos chips

General
By 

Last updated: March 18th, 2023 at 10:16 UTC+01:00

Update: Samsung addressed five (CVE-2023-26072, CVE-2023-26073, CVE-2023-26074, CVE-2023-26075, CVE-2023-26076) of the eighteen 0-day vulnerabilities in Exynos Modems through the March 2023 security patch. One vulnerability identified as CVE-2023-24033, mentioned by Samsung Semiconductor in January, may have remained unpatched and passed Project Zero's standard 90-day deadline.

The remaining twelve vulnerabilities have not passed the 90-day deadline and have not yet been assigned CVE-IDs for security reasons. They may or may have not been patched already. For the time being, these vulnerabilities and potential fixes remain undisclosed.

In addition, Samsung Semiconductor updated its advisories to remove the Exynos W920 SoC as an affected chip, and Project Zero followed suit.

Until Samsung patches these Exynos security vulnerabilities, affected users can disable Wi-Fi Calling and Voice-over-LTE (VoLTE) on their mobile devices to minimize the risk of being attacked.

Original story follows.

Google’s Project Zero security research team has found 18 vulnerabilities in Samsung phones powered by the Exynos chip. Notably, the vulnerabilities give hackers a free way to access your phones with the help of your phone number. According to a blog post, a bunch of Samsung Galaxy S, M, and A series phones are prone to these 18 vulnerabilities.

Security researchers do not disclose the vulnerabilities until after they are resolved. Project Zero researcher Maddie Stone tweeted that Samsung is still not concerned about this exploit, and affected phones still don’t have patches 90 days after the report. As per the researchers, not only Galaxy S, M, and A series phones but also some Vivo and Pixel 6 and 7 series phones are also affected by this Exynos chip vulnerability.

Critical bug affecting Galaxy phones using Exynos chips are related to VoWiFi and VoLTE

Galaxy phones that are affected by the Exynos chip vulnerability are the Galaxy S22, Galaxy M33, Galaxy M13, Galaxy M12, Galaxy A71, Galaxy A53, Galaxy A33, Galaxy A21 Galaxy A21sGalaxy A13, Galaxy A12, and Galaxy A04 series. Also, any wearables that use the Exynos W920 chipset or any vehicles that use the Exynos Auto T5123 chipset are also exposed to hackers thanks to the Exynos chip vulnerability.

The good news for owners of the Pixel 7 series is that Google has already patched this issue in its March security update. The update, however, hasn't reached the Pixel 6, Pixel 6 Pro, and Pixel 6a.

Coming back to Samsung, if you have any of the above-mentioned Galaxy phones, then it is advised that you disable the Wi-Fi calling feature and the VoLTE (Voice-over-LTE) feature on your phones. Also, you should frequently check for the latest security update and, if available, install it right away.

General ExynosExynos W920Galaxy A04Galaxy A12Galaxy A13Galaxy A33Galaxy A53Galaxy A71Galaxy M12Galaxy M13Galaxy M33Galaxy S22GoogleMarch 2023 Security PatchPixelVivo
Galaxy AI summarized

Scroll for more related content
News For You

You might also like

Google’s Gemini AI could integrate deeper with Samsung’s stock apps

Google’s Gemini AI could integrate deeper with Samsung’s stock apps

Over the past few months, Gemini, Google's new-generation AI assistant, has received many new features and integrations. Most of those integrations were with Google's own services. In the future, Google may plan to integrate Gemini with Samsung's stock apps. Gemini could integrate deeply with Samsung's stock apps Gemini could soon integrate with Samsung's stock apps […]

  • By Asif Iqbal Shaik
  • 14 hours ago
Samsung could soon allow you to summon Gemini with power button

Samsung could soon allow you to summon Gemini with power button

Do you remember when Samsung used to have a dedicated button on its phones to summon Bixby? It was introduced with the Galaxy S8, but the company removed it, starting with the Galaxy S20. Now, you can summon Bixby using the power button. Samsung doesn't let you use any other AI assistant with the power […]

  • By Asif Iqbal Shaik
  • 5 days ago
Gemini brings new actions and features to Galaxy phones

Gemini brings new actions and features to Galaxy phones

Google has replaced Google Assistant with Gemini on most new Android phones. When Gemini was new, it had much better language interpretation than Google Assistant, but the latter had more features and integration with more services. Now, Gemini is getting those features and integrations. Gemini is getting Utilities extension for more on-device actions Google has […]

  • By Asif Iqbal Shaik
  • 6 days ago
Switching from iPhone to Galaxy is about to get easier

Switching from iPhone to Galaxy is about to get easier

One of the biggest problems in switching between different smartphone platforms is the transfer of personal data. Although Apple and Google have improved data transfer from their own platforms to other platforms, it is still not completely seamless. Google is making things better by bringing support for transferring Live Photos from iPhones to Android devices. […]

  • By Asif Iqbal Shaik
  • 1 week ago
One UI 7 builds for Galaxy A73 and Galaxy A33 progressing nicely

One UI 7 builds for Galaxy A73 and Galaxy A33 progressing nicely

It's no secret that Samsung's working on the One UI 7 release. Its development teams are internally testing builds on compatible devices. If the current expectations hold true, the One UI 7 beta program may be launched before the end of this year with a stable release slated for early 2025. There's a long list […]

  • By Adnan Farooqui
  • 1 week ago
Galaxy S22 One UI 7.0 firmware found for one of the seven beta eligible countries

Galaxy S22 One UI 7.0 firmware found for one of the seven beta eligible countries

The first Galaxy S22 Ultra One UI 7.0 internal test firmware has appeared on Samsung's servers (via Tarun Vats). Interestingly, the firmware has gone live in Poland. That's one of the seven countries that are included in every One UI beta program. The Galaxy S22 One UI 7.0 beta is still weeks away However, this […]

  • By Abhijeet Mishra
  • 2 weeks ago