CVE-2025-54601: Race Condition
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor amd Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000. Improper synchronization on a global variable leads to a double free. An attacker can trigger a race condition by invoking an ioctl function concurrently from multiple threads.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54601?
CVE-2025-54601 is classified with a high severity due to the potential for exploitation leading to critical system instability.
How do I fix CVE-2025-54601?
To mitigate CVE-2025-54601, update the affected Samsung Exynos firmware to the latest version provided by Samsung.
What devices are affected by CVE-2025-54601?
CVE-2025-54601 affects various Samsung devices, including those using Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000 processors.
What type of vulnerability is CVE-2025-54601?
CVE-2025-54601 is a double free vulnerability caused by improper synchronization on a global variable in the Wi-Fi driver.
Can CVE-2025-54601 be exploited remotely?
Yes, CVE-2025-54601 can be exploited remotely by an attacker through a crafted input that triggers a race condition.