Best buy guide: Galaxy Watch 6 or Galaxy S24+. Woo-hoo join SamMobile on WhatsApp or Telegram!

SamMobile has affiliate and sponsored partnerships. If you buy something through one of these links, we may earn a commission.

Notifications
    News for you

    [Updated] Samsung hasn’t patched a critical bug affecting many Galaxy phones with Exynos chips

    General
    By 

    Last updated: March 18th, 2023 at 10:16 UTC+01:00

    Update: Samsung addressed five (CVE-2023-26072, CVE-2023-26073, CVE-2023-26074, CVE-2023-26075, CVE-2023-26076) of the eighteen 0-day vulnerabilities in Exynos Modems through the March 2023 security patch. One vulnerability identified as CVE-2023-24033, mentioned by Samsung Semiconductor in January, may have remained unpatched and passed Project Zero's standard 90-day deadline.

    The remaining twelve vulnerabilities have not passed the 90-day deadline and have not yet been assigned CVE-IDs for security reasons. They may or may have not been patched already. For the time being, these vulnerabilities and potential fixes remain undisclosed.

    In addition, Samsung Semiconductor updated its advisories to remove the Exynos W920 SoC as an affected chip, and Project Zero followed suit.

    Until Samsung patches these Exynos security vulnerabilities, affected users can disable Wi-Fi Calling and Voice-over-LTE (VoLTE) on their mobile devices to minimize the risk of being attacked.

    Original story follows.

    Google’s Project Zero security research team has found 18 vulnerabilities in Samsung phones powered by the Exynos chip. Notably, the vulnerabilities give hackers a free way to access your phones with the help of your phone number. According to a blog post, a bunch of Samsung Galaxy S, M, and A series phones are prone to these 18 vulnerabilities.

    Security researchers do not disclose the vulnerabilities until after they are resolved. Project Zero researcher Maddie Stone tweeted that Samsung is still not concerned about this exploit, and affected phones still don’t have patches 90 days after the report. As per the researchers, not only Galaxy S, M, and A series phones but also some Vivo and Pixel 6 and 7 series phones are also affected by this Exynos chip vulnerability.

    Critical bug affecting Galaxy phones using Exynos chips are related to VoWiFi and VoLTE

    Galaxy phones that are affected by the Exynos chip vulnerability are the Galaxy S22, Galaxy M33, Galaxy M13, Galaxy M12, Galaxy A71, Galaxy A53, Galaxy A33, Galaxy A21 Galaxy A21sGalaxy A13, Galaxy A12, and Galaxy A04 series. Also, any wearables that use the Exynos W920 chipset or any vehicles that use the Exynos Auto T5123 chipset are also exposed to hackers thanks to the Exynos chip vulnerability.

    The good news for owners of the Pixel 7 series is that Google has already patched this issue in its March security update. The update, however, hasn't reached the Pixel 6, Pixel 6 Pro, and Pixel 6a.

    Coming back to Samsung, if you have any of the above-mentioned Galaxy phones, then it is advised that you disable the Wi-Fi calling feature and the VoLTE (Voice-over-LTE) feature on your phones. Also, you should frequently check for the latest security update and, if available, install it right away.

    General ExynosExynos W920Galaxy A04Galaxy A12Galaxy A13Galaxy A33Galaxy A53Galaxy A71Galaxy M12Galaxy M13Galaxy M33Galaxy S22GoogleMarch 2023 Security PatchPixelVivo

    You might also like

    Samsung and Google tease new AI features

    Samsung and Google tease new AI features

    Samsung and Google have started teasing new AI (Artificial Intelligence) features developed through a partnership that's never been stronger. In a recent social media post on X, both Samsung Mobile and Google's Rick Osterloh confirmed that the two companies are continuing to work together to develop new exciting features. According to these recent teasers, Google's […]

    • By Mihai Matei
    • 13 hours ago
    You can now switch Google Meet calls between Galaxy phones and Galaxy Books

    You can now switch Google Meet calls between Galaxy phones and Galaxy Books

    Google Meet is an excellent tool for video calls, conferences, and meetings. It has become even better with each passing year, as Google has been continuously adding more features to it. Google Meet will get better for those who want to switch from one device to another during a call. Google Meet to make it […]

    • By Asif Iqbal Shaik
    • 18 hours ago
    Google Wallet on Galaxy Watch asking for PIN to make payments is just a bug

    Google Wallet on Galaxy Watch asking for PIN to make payments is just a bug

    Earlier this week, 9To5Google reported that Google Wallet on Wear OS had started asking for the PIN to make tap-to-pay transactions for some users. While the change offered increased security, many people were disappointed with it as they would now have to go through an additional step on their Galaxy Watch to make payments. Well, […]

    • By Abid Iqbal Shaik
    • 1 day ago
    Galaxy S22 also getting special 4G-related update in Europe

    Galaxy S22 also getting special 4G-related update in Europe

    Earlier this week, Samsung rolled out a new software update to various devices across the European region, bringing some changes related to compatibility with 4G networks. The update was released for the Galaxy S24, S23, Z Fold 5, Z Flip 5, and the Galaxy A54 initially, and it is now making its way to the […]

    • By Abhijeet Mishra
    • 2 days ago
    Galaxy S22, Fold 4, and Flip 4 to get One UI 6.1 in first week of May?

    Galaxy S22, Fold 4, and Flip 4 to get One UI 6.1 in first week of May?

    Back in February, Samsung announced the One UI 6.1 update for flagship devices launched in 2023 and said that the update would come out sometime in March. The company didn't offer any more specifics on the release date, and the update eventually started rolling out at the very end of the month. Last week, Samsung […]

    • By Abhijeet Mishra
    • 2 days ago
    Galaxy phones start getting April 2024 Google Play System update

    Galaxy phones start getting April 2024 Google Play System update

    Google's April 2024 Play System update is now rolling out for Samsung Galaxy devices, including the Galaxy S24 flagship lineup. The latter, as you might remember, was a bit late to receive the January 2024 Google Play System update a couple of months ago, but now it appears to be back on track with the […]

    • By Mihai Matei
    • 3 days ago