CVE-2026-23786: Race Condition
Published Sep 14, 2026
·Updated
An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. A TOCTOU race condition in the Exynos DRM HDR Driver leads to a heap overflow, causing a kernel crash.
Affected Software
9 affected components
Samsung Samsung Mobile Processor Exynos 1280
Samsung Samsung Mobile Processor Exynos 2200
Samsung Samsung Mobile Processor Exynos 1380
Samsung Samsung Mobile Processor Exynos 1480
Samsung Samsung Mobile Processor Exynos 2400
Samsung Samsung Mobile Processor Exynos 1580
Samsung Samsung Mobile Processor Exynos 2500
Samsung Samsung Mobile Processor Exynos 1680
Samsung Samsung Mobile Processor Exynos 2600
Event History
Sep 14, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access and conditions are required to exploit this issue?
Exploitation requires local access and low privileges. It does not require user interaction, but the attack complexity is rated high.