CVE-2025-62815: Null Pointer Dereference
Published Mar 3, 2026
·Updated
An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of npuprotodrv.ast.threadref in setcpuaffinity() causes a denial of service.
Affected Software
11 affected components
Samsung Mobile Processor Exynos=1380, =1480, =2400, =1580, =2500
All of the following
Samsung Exynos 1380 Firmware
Samsung Exynos 1380
All of the following
Samsung Exynos 1480 Firmware
Samsung Exynos 1480
All of the following
Samsung Exynos 1580 Firmware
Samsung Exynos 1580
All of the following
Samsung Exynos 2400 Firmware
Samsung Exynos 2400
All of the following
Samsung Exynos 2500 Firmware
Samsung Exynos 2500
Event History
Mar 3, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-62815?
CVE-2025-62815 is classified as a denial of service vulnerability due to a NULL pointer dereference.
2
How do I fix CVE-2025-62815?
To fix CVE-2025-62815, ensure that your Samsung Exynos processor firmware is updated to the latest version provided by Samsung.
3
Which devices are affected by CVE-2025-62815?
CVE-2025-62815 affects Samsung Mobile Processors Exynos 1380, 1480, 2400, 1580, and 2500.
4
What is the impact of CVE-2025-62815?
The impact of CVE-2025-62815 is a denial of service that can result in system instability.
5
Is CVE-2025-62815 exploitable remotely?
Yes, CVE-2025-62815 can potentially be exploited remotely, leading to service interruptions.