Description
An issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1080, 1280, 2200, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000. A race condition in the VTS driver results in an out-of-bounds read, leading to an information leak.
Published: 2025-11-04
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 07 Nov 2025 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Samsung exynos 1080 Firmware
Samsung exynos 1280 Firmware
Samsung exynos 1380 Firmware
Samsung exynos 1480 Firmware
Samsung exynos 1580 Firmware
Samsung exynos 2200 Firmware
Samsung exynos 2400 Firmware
Samsung exynos 2500 Firmware
Samsung exynos W1000 Firmware
Samsung exynos W920 Firmware
Samsung exynos W930 Firmware
CPEs cpe:2.3:h:samsung:exynos_1080:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2500:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w1000:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w920:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w930:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w920_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w930_firmware:-:*:*:*:*:*:*:*
Vendors & Products Samsung exynos 1080 Firmware
Samsung exynos 1280 Firmware
Samsung exynos 1380 Firmware
Samsung exynos 1480 Firmware
Samsung exynos 1580 Firmware
Samsung exynos 2200 Firmware
Samsung exynos 2400 Firmware
Samsung exynos 2500 Firmware
Samsung exynos W1000 Firmware
Samsung exynos W920 Firmware
Samsung exynos W930 Firmware

Wed, 05 Nov 2025 11:00:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung exynos
Samsung exynos 1080
Samsung exynos 1280
Samsung exynos 1380
Samsung exynos 1480
Samsung exynos 1580
Samsung exynos 2200
Samsung exynos 2400
Samsung exynos 2500
Samsung exynos W1000
Samsung exynos W920
Samsung exynos W930
Samsung mobile
Samsung samsung Mobile
Vendors & Products Samsung
Samsung exynos
Samsung exynos 1080
Samsung exynos 1280
Samsung exynos 1380
Samsung exynos 1480
Samsung exynos 1580
Samsung exynos 2200
Samsung exynos 2400
Samsung exynos 2500
Samsung exynos W1000
Samsung exynos W920
Samsung exynos W930
Samsung mobile
Samsung samsung Mobile

Tue, 04 Nov 2025 21:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-125
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'}


Tue, 04 Nov 2025 18:00:00 +0000

Type Values Removed Values Added
Description An issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1080, 1280, 2200, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000. A race condition in the VTS driver results in an out-of-bounds read, leading to an information leak.
References

Subscriptions

Samsung Exynos Exynos 1080 Exynos 1080 Firmware Exynos 1280 Exynos 1280 Firmware Exynos 1380 Exynos 1380 Firmware Exynos 1480 Exynos 1480 Firmware Exynos 1580 Exynos 1580 Firmware Exynos 2200 Exynos 2200 Firmware Exynos 2400 Exynos 2400 Firmware Exynos 2500 Exynos 2500 Firmware Exynos W1000 Exynos W1000 Firmware Exynos W920 Exynos W920 Firmware Exynos W930 Exynos W930 Firmware Mobile Samsung Mobile
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-11-04T20:36:14.961Z

Reserved: 2025-07-20T00:00:00.000Z

Link: CVE-2025-54325

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2025-11-04T18:16:45.273

Modified: 2025-11-07T12:56:43.197

Link: CVE-2025-54325

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-05T10:47:14Z

Weaknesses