Reserve the Next Galaxy for free, and get $50 Samsung Credit. Follow us on Google news!

SamMobile has affiliate and sponsored partnerships. If you buy something through one of these links, we may earn a commission.

News For You
News For You
Notifications

Security flaw in Qualcomm modems affects millions of 5G Samsung devices

Phone
By 

Last updated: May 12th, 2021 at 15:54 UTC+02:00

A serious security flaw affecting Qualcomm's mobile station modems (MSM) was recently disclosed by security research team Check Point, who claims that the vulnerability could be exploited to inject malicious code into the phone by using the Android operating system itself as an entry point. The affected chip(s) are reportedly responsible for connecting nearly 40% of all smartphones in the world, including high-end phones from Samsung and other OEMs.

The research team found that if a researcher wants to explore the latest 5G code in devices powered by Qualcomm's modems by implementing a debugger, the easiest way to do that is to exploit MSM data services through QMI' (Qualcomm MSM Interface). The investigation revealed a vulnerability in modem data service that can be used to control the modem and dynamically patch it from the application processor.'

Numerous Samsung Galaxy devices remain vulnerable to this threat

The good news is that although the security flaw was publicly disclosed earlier today, it has already been addressed and patched by Qualcomm in December 2020. The issue was kept under wraps for obvious security reasons.

The not-so-good news is that numerous smartphones developed by Samsung (as well as other OEMs) are still vulnerable as of this writing. As always, if a part manufacturer such as Qualcomm releases a patch for its hardware, it's up to smartphone OEMs to distribute the update as they see fit. And because we live in the world of Android OS where fragmentation is par for the course, some devices will be updated sooner than others, with availability differing by region.

Now, because Check Point has decided to make this issue public, this indicates that smartphone OEMs — including Samsung — should now be in the process of updating their devices to address the security flaw, however, it may take some time.

The May 2021 security patch is now rolling out for numerous Galaxy devices, but it might not contain the necessary fixes for this issue. The security patch does include a fix for devices powered by both Exynos and Qualcomm chipsets — one that was reported in December — but it doesn't seem to match Check Point's description. Qualcomm has classified the vulnerability as ‘CVE-2020-11292,' and this classification was not mentioned in Samsung's latest security bulletin.

Update: Samsung has since updated the May 2021 security bulletin and confirmed that the security flaw classified as “CVE-2020-11292” has been gradually patched since January.

Original story continues:

At the end of the day, what this means is that Samsung is, or should soon be in the process of releasing a new security patch that fixes Qualcomm's security flaw. However, we're not sure how many models are affected or if the May 2021 security patch addresses it in any capacity.

Either way, mobile device users should make sure that they're always running the latest security updates. SamMobile readers can refer to our new online tool to check if their phone runs the latest security patch available in their region.

Via FirmwareGeneralPhoneTablet 5GQualcomm
Galaxy AI summarized

Scroll for more related content
News For You

You might also like

Qualcomm’s new Snapdragon X could bring cheaper ARM Galaxy Book

Qualcomm’s new Snapdragon X could bring cheaper ARM Galaxy Book

Last year, Qualcomm launched the Snapdragon X Elite, the company’s current flagship chipset for Windows-powered laptops. At launch, it offered much better per-watt performance compared to processors from AMD and Intel, which pulled a lot of brands and consumers towards ARM-powered PCs, making them more mainstream than before. However, the Snapdragon X Elite is quite […]

  • By Abid Iqbal Shaik
  • 17 mins ago
Qualcomm confirms Galaxy S25 series will have Snapdragon chips

Qualcomm confirms Galaxy S25 series will have Snapdragon chips

It’s no secret that Samsung’s next lineup of flagship smartphones, the Galaxy S25 series, will feature the Qualcomm Snapdragon 8 Elite chipset, thanks to all the leaks we have had about it, a huge relief for people who don't want to see an Exynos chipset inside them due to fear of inferior performance. However, there […]

  • By Abid Iqbal Shaik
  • 2 hours ago
Samsung-owned Harman unveils Neo QLED screen with HDR10+ for cars

Samsung-owned Harman unveils Neo QLED screen with HDR10+ for cars

Harman, which is a wholly owned subsidiary of Samsung Electronics, showcased futuristic connectivity, display, and infotainment systems for connected cars. At its CES 2025 booth, the company displayed a full-length screen that features Samsung's Neo QLED display technology. Harman's Ready Display for cars uses Neo QLED panel with HDR10+ Harman showcased its Ready Display technology […]

  • By Asif Iqbal Shaik
  • 1 day ago
As TSMC gets costly, Nvidia and Qualcomm look at Samsung for 2nm chips

As TSMC gets costly, Nvidia and Qualcomm look at Samsung for 2nm chips

Apple was expected to be the first to launch processors made using a 2nm process node. However, the company has reportedly postponed it due to the high pricing of getting 2nm chips made by TSMC. A report claims Nvidia and Qualcomm are now also looking at Samsung for their 2nm chips. To diversify supply chain, […]

  • By Asif Iqbal Shaik
  • 1 week ago
Snapdragon 8 Elite Gen 2 could come early, specs leak too

Snapdragon 8 Elite Gen 2 could come early, specs leak too

Qualcomm usually launches its flagship chipset for mobile devices in the fourth quarter of every year. A new rumor, however, suggests that the brand might launch the next generation flagship chipset, which the company might call the Snapdragon 8 Elite Gen 2, much earlier than usual. According to a new report from Digital Chat Station, […]

  • By Abid Iqbal Shaik
  • 1 week ago
Samsung reportedly loses yet another 3nm chip deal from Qualcomm

Samsung reportedly loses yet another 3nm chip deal from Qualcomm

Samsung was once a major player in the contract chip manufacturing space. It used to make semiconductor chips (application processors and GPUs) for several big-name brands, including Apple, Nvidia, and Qualcomm. However, Samsung has recently failed to bag orders from those brands. Specifically, it failed to get any contract for its 3nm chips. According to […]

  • By Asif Iqbal Shaik
  • 2 weeks ago