CVE-2025-58348: Medium severity Samsung Mobile Processor Exynos vulnerability
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930 and W1000. There is unbounded memory allocation via a large buffer in a /proc/driver/unifi0/confgtspec write operation, leading to kernel memory exhaustion.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58348?
CVE-2025-58348 is classified as a high severity vulnerability due to unbounded memory allocation that can lead to kernel memory issues.
Who is affected by CVE-2025-58348?
CVE-2025-58348 affects the Wi-Fi driver in various Samsung Mobile and Wearable Processors including Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000.
How do I fix CVE-2025-58348?
To fix CVE-2025-58348, users should apply the latest firmware updates from Samsung that address this vulnerability.
What is the cause of CVE-2025-58348?
CVE-2025-58348 is caused by an unbounded memory allocation in the Wi-Fi driver, which can lead to kernel memory corruption.
Can CVE-2025-58348 be exploited remotely?
Yes, CVE-2025-58348 can potentially be exploited remotely through specific interactions with the affected Wi-Fi driver.