CVE-2025-58347: Medium severity Samsung Exynos 980 vulnerability
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930 and W1000. There is unbounded memory allocation via a large buffer in a /proc/driver/unifi0/p2pcertif write operation, leading to kernel memory exhaustion.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58347?
The severity of CVE-2025-58347 is rated as high due to unbounded memory allocation leading to potential kernel memory issues.
How do I fix CVE-2025-58347?
To fix CVE-2025-58347, update your affected device firmware to the latest version provided by Samsung.
Which devices are affected by CVE-2025-58347?
CVE-2025-58347 affects several Samsung processors, including Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, and various wearable models.
What types of vulnerabilities does CVE-2025-58347 represent?
CVE-2025-58347 represents a memory allocation vulnerability that can lead to kernel exploitation.
Is there a workaround for CVE-2025-58347 until a fix is available?
Currently, the best mitigation for CVE-2025-58347 is to apply the firmware update as soon as it is released.