Alert, Galaxy A54 and Galaxy S23 series deals available! | Follow SamMobile on Google News now!

SamMobile has affiliate and sponsored partnerships. If you buy something through one of these links, we may earn a commission. Learn more.

[Updated] Samsung hasn’t patched a critical bug affecting many Galaxy phones with Exynos chips

General
By 

Last updated: March 18th, 2023 at 10:16 UTC+01:00

Update: Samsung addressed five (CVE-2023-26072, CVE-2023-26073, CVE-2023-26074, CVE-2023-26075, CVE-2023-26076) of the eighteen 0-day vulnerabilities in Exynos Modems through the March 2023 security patch. One vulnerability identified as CVE-2023-24033, mentioned by Samsung Semiconductor in January, may have remained unpatched and passed Project Zero’s standard 90-day deadline.

The remaining twelve vulnerabilities have not passed the 90-day deadline and have not yet been assigned CVE-IDs for security reasons. They may or may have not been patched already. For the time being, these vulnerabilities and potential fixes remain undisclosed.

In addition, Samsung Semiconductor updated its advisories to remove the Exynos W920 SoC as an affected chip, and Project Zero followed suit.

Until Samsung patches these Exynos security vulnerabilities, affected users can disable Wi-Fi Calling and Voice-over-LTE (VoLTE) on their mobile devices to minimize the risk of being attacked.

Original story follows.

Google’s Project Zero security research team has found 18 vulnerabilities in Samsung phones powered by the Exynos chip. Notably, the vulnerabilities give hackers a free way to access your phones with the help of your phone number. According to a blog post, a bunch of Samsung Galaxy S, M, and A series phones are prone to these 18 vulnerabilities.

Security researchers do not disclose the vulnerabilities until after they are resolved. Project Zero researcher Maddie Stone tweeted that Samsung is still not concerned about this exploit, and affected phones still don’t have patches 90 days after the report. As per the researchers, not only Galaxy S, M, and A series phones but also some Vivo and Pixel 6 and 7 series phones are also affected by this Exynos chip vulnerability.

Critical bug affecting Galaxy phones using Exynos chips are related to VoWiFi and VoLTE

Galaxy phones that are affected by the Exynos chip vulnerability are the Galaxy S22, Galaxy M33, Galaxy M13, Galaxy M12, Galaxy A71, Galaxy A53, Galaxy A33, Galaxy A21 Galaxy A21sGalaxy A13, Galaxy A12, and Galaxy A04 series. Also, any wearables that use the Exynos W920 chipset or any vehicles that use the Exynos Auto T5123 chipset are also exposed to hackers thanks to the Exynos chip vulnerability.

The good news for owners of the Pixel 7 series is that Google has already patched this issue in its March security update. The update, however, hasn’t reached the Pixel 6, Pixel 6 Pro, and Pixel 6a.

Coming back to Samsung, if you have any of the above-mentioned Galaxy phones, then it is advised that you disable the Wi-Fi calling feature and the VoLTE (Voice-over-LTE) feature on your phones. Also, you should frequently check for the latest security update and, if available, install it right away.

General ExynosExynos W920Galaxy A04Galaxy A12Galaxy A13Galaxy A33Galaxy A53Galaxy A71Galaxy M12Galaxy M13Galaxy M33Galaxy S22GoogleMarch 2023 Security PatchPixelVivo
Load 0 comments

You might also like

Exclusive Galaxy S23 feature will soon come to older phones

Exclusive Galaxy S23 feature will soon come to older phones

Samsung’s One UI 5.1 update, introduced alongside the Galaxy S23 series, added a handful of new features to the Gallery app, such as the Image Clipper, which so far remained exclusive to the latest flagship phones. But not for long. The Image Clipper will supposedly land on older Galaxy phones soon. The Galaxy S22 and […]

  • By Mihai Matei
  • 1 hour ago
Tests show the Galaxy S23 is a better 5G phone than Galaxy S22

Tests show the Galaxy S23 is a better 5G phone than Galaxy S22

One of the ways in which the Galaxy S23 series is technically superior to the Galaxy S22 lineup is through a new Qualcomm modem. The 2023 flagships sport the Snapdragon X70, which should be an upgrade over the S22’s Snapdragon X65 chip. At least on paper, according to the manufacturer. But what about performance in […]

  • By Mihai Matei
  • 3 hours ago
Galaxy A01 gets the March 2023 security update in the US

Galaxy A01 gets the March 2023 security update in the US

Samsung is releasing its latest software update to many old low-end and mid-range devices. The latest device from the company’s stable to get the new update is the Galaxy A01. Released in late 2019, the affordable smartphone has now started getting the March 2023 security update. The latest software update for the Galaxy A01 bumps […]

  • By Asif Iqbal Shaik
  • 6 hours ago
Four-year-old Galaxy tablet gets latest software update

Four-year-old Galaxy tablet gets latest software update

Samsung has released the latest software update to its four-year-old flagship tablet, the Galaxy Tab S6. The high-end tablet, released in early 2019, has started getting the March 2023 security update in European countries. The update can expand to other regions worldwide within the next few days. The latest software update for the Galaxy Tab […]

  • By Asif Iqbal Shaik
  • 8 hours ago
As Vodafone shuts down RCS in the UK, Samsung Messages to get RCS support soon

As Vodafone shuts down RCS in the UK, Samsung Messages to get RCS support soon

Vodafone has announced that it is pulling the plug on its own RCS messaging support in the UK. An alert is already going out to the customers that the RCS messaging support will shut down between March 15 and March 31, 2023. According to some users, a message delivered by Vodafone tells the customers that the […]

  • By Sagar Naresh
  • 8 hours ago
Galaxy S23 drop test shows sustainability doesn’t have to compromise durability

Galaxy S23 drop test shows sustainability doesn’t have to compromise durability

One more Galaxy S23 drop test has emerged, testing the durability of the sustainable designs of the three phones in the lineup. Allstate Protection Plans (formerly SquareTrade) has published a video that shows how the Galaxy S23, Galaxy S23+, and Galaxy S23 Ultra held up after dropping them on their back and face from a […]

  • By Asif Iqbal Shaik
  • 9 hours ago