Executive brief
A security vulnerability has been identified in the Wi-Fi software driver used by several Samsung Exynos mobile and wearable processors. This flaw could allow a malicious application installed on a device to cause system instability or potentially gain unauthorized access to sensitive data. The issue affects a wide range of Samsung smartphones and smartwatches using these specific chips.
Technical details
A use-after-free (UAF) vulnerability exists in the Wi-Fi driver of multiple Samsung Exynos chipsets (980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000). The root cause is improper synchronization (CWE-362) when accessing a global variable, which allows an attacker to trigger a race condition. By concurrently invoking an ioctl function from multiple threads, a local attacker with low privileges can cause memory corruption. This can lead to local privilege escalation or a complete system crash (denial of service).
Affected products
- Samsung Exynos 980
- Samsung Exynos 850
- Samsung Exynos 1080
- Samsung Exynos 1280
- Samsung Exynos 1330
- Samsung Exynos 1380
- Samsung Exynos 1480
- Samsung Exynos 1580
- Samsung Exynos W920
- Samsung Exynos W930
- Samsung Exynos W1000
Timeline
- 2025-05-20: disclosed: Reported date according to vendor advisory
- 2026-04-06: advisory: NVD publication date