Junglewise Threat Intelligence

CVE-2025-54602: Samsung Exynos Wi-Fi driver use-after-free via race condition

CVE-2025-54602 · Severity: high · CVSS 7 · Published 2026-04-06

Technologies: Samsung Exynos 1280, Samsung Exynos 1480, Samsung Exynos 1380, Samsung Exynos W930, Samsung Exynos W920, Samsung Exynos 980, Samsung Exynos W1000, Samsung Exynos 1330, Samsung Exynos 1580, Samsung Exynos 850, Samsung Exynos 1080. Vendors: Samsung.

Executive brief

A security vulnerability has been identified in the Wi-Fi software driver used by several Samsung Exynos mobile and wearable processors. This flaw could allow a malicious application installed on a device to cause system instability or potentially gain unauthorized access to sensitive data. The issue affects a wide range of Samsung smartphones and smartwatches using these specific chips.

Technical details

A use-after-free (UAF) vulnerability exists in the Wi-Fi driver of multiple Samsung Exynos chipsets (980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000). The root cause is improper synchronization (CWE-362) when accessing a global variable, which allows an attacker to trigger a race condition. By concurrently invoking an ioctl function from multiple threads, a local attacker with low privileges can cause memory corruption. This can lead to local privilege escalation or a complete system crash (denial of service).

Affected products

  • Samsung Exynos 980
  • Samsung Exynos 850
  • Samsung Exynos 1080
  • Samsung Exynos 1280
  • Samsung Exynos 1330
  • Samsung Exynos 1380
  • Samsung Exynos 1480
  • Samsung Exynos 1580
  • Samsung Exynos W920
  • Samsung Exynos W930
  • Samsung Exynos W1000

Timeline

  • 2025-05-20: disclosed: Reported date according to vendor advisory
  • 2026-04-06: advisory: NVD publication date

References