An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Incorrect Handling of the NL80211 vendor command leads to a buffer overflow via a certain ioctl message, issue 1 of 2.
The error results from improper handling of the NL80211 vendor command in the Wi-Fi driver. Through a specially crafted ioctl message, a buffer overflow (buffer overflow) in the kernel space is possible. An attacker can deliver a malicious payload through the Wi-Fi network interface without needing device access or user interaction. This is the first of two identified vulnerabilities of this type in this component.
An attacker can gain full control over the device, including the ability to read and modify data (RCE, privilege escalation) and cause device unavailability. The compromise occurs at the kernel driver level, which provides access to system-protected resources.
Patches available from the manufacturer should be applied in accordance with the references: https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-52908/. Until an update is available, it is recommended to restrict device exposure to untrusted Wi-Fi networks.
Samsung Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000 processors — mobile and wearable devices equipped with the firmware of these processors
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HSamsung Exynos 1280
HWSamsungall versionsSamsung Exynos 1280 Firmware
OSSamsungall versionsSamsung Exynos 1330
HWSamsungall versionsSamsung Exynos 1330 Firmware
OSSamsungall versionsSamsung Exynos 1380
HWSamsungall versionsSamsung Exynos 1380 Firmware
OSSamsungall versionsSamsung Exynos 1480
HWSamsungall versionsSamsung Exynos 1480 Firmware
OSSamsungall versionsSamsung Exynos 1580
HWSamsungall versionsSamsung Exynos 1580 Firmware
OSSamsungall versionsSamsung Exynos 850
HWSamsungall versionsSamsung Exynos 850 Firmware
OSSamsungall versionsSamsung Exynos 980
HWSamsungall versionsSamsung Exynos 980 Firmware
OSSamsungall versionsSamsung Exynos W1000
HWSamsungall versionsSamsung Exynos W1000 Firmware
OSSamsungall versionsSamsung Exynos W920
HWSamsungall versionsSamsung Exynos W920 Firmware
OSSamsungall versionsSamsung Exynos W930
HWSamsungall versionsSamsung Exynos W930 Firmware
OSSamsungall versions
Related vulnerabilities
Buffer overflow w sterowniku Wi-Fi Samsung Exynos przez NL80211
Out-of-bounds write w procesorach Samsung Exynos przy przetwarzaniu SMS TP-UD
Stack-based Buffer Overflow w obsłudze SMS w procesorach Samsung Exynos
Błąd obsługi pakietów LTE MAC w procesorach Samsung Exynos powoduje crash baseband
Out-of-bounds write w Samsung Exynos via błędne pakiety NAS