CVE-2025-27891: Critical severity samsung exynos vulnerability
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds reads via malformed NAS packets.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27891?
CVE-2025-27891 has been rated as a high severity vulnerability due to its potential to cause out-of-bounds reads.
How do I fix CVE-2025-27891?
To fix CVE-2025-27891, ensure that your device firmware is updated to the latest version released by Samsung addressing this vulnerability.
Which devices are affected by CVE-2025-27891?
CVE-2025-27891 affects several Samsung Mobile Processors, Wearable Processors, and Modems including Exynos 980, 990, and others.
What type of vulnerability is CVE-2025-27891?
CVE-2025-27891 is characterized as an out-of-bounds read vulnerability caused by a lack of length check on malformed NAS packets.
Is there a workaround for CVE-2025-27891?
Currently, the recommended action for CVE-2025-27891 is to apply the necessary firmware updates as there are no formal workarounds.