Executive brief
Samsung's Exynos Auto processors are system-on-chip (SoC) components used in automotive systems to manage vehicle operations and infotainment. A missing buffer length validation in the kernel driver can be exploited to cause a denial of service, potentially rendering vehicle systems unresponsive or unstable while the attack is active.
Technical details
The buffer queue driver in Samsung Automotive Processor Exynos Auto models 8890, V7, V9, and V920 lacks proper length validation on buffer operations. This allows an attacker with local kernel access to read or write beyond allocated buffer boundaries, triggering a kernel memory access violation (kernel overread/overwrite). The vulnerability manifests as a kernel panic or denial of service when the faulty memory access is triggered. The attack requires local access to the affected device, likely through ioctl calls to the vulnerable driver, but does not require elevated privileges. Patches are expected to add appropriate length checks in the buffer queue driver code.
Affected products
- Samsung Exynos Auto 8890 all
- Samsung Exynos Auto V7 all
- Samsung Exynos Auto V9 all
- Samsung Exynos Auto V920 all
Timeline
- 2026-09-14: disclosed