Description
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of session->ncp_hdr_buf in __pilot_parsing_ncp() causes a denial of service.
Published: 2026-03-03
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 10 Mar 2026 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 04 Mar 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Samsung exynos 1280
Samsung exynos 1280 Firmware
Samsung exynos 1380
Samsung exynos 1380 Firmware
Samsung exynos 1480
Samsung exynos 1480 Firmware
Samsung exynos 1580
Samsung exynos 1580 Firmware
Samsung exynos 2200
Samsung exynos 2200 Firmware
Samsung exynos 2400
Samsung exynos 2400 Firmware
Samsung exynos 2500
Samsung exynos 2500 Firmware
Weaknesses CWE-476
CPEs cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2500:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2500_firmware:-:*:*:*:*:*:*:*
Vendors & Products Samsung exynos 1280
Samsung exynos 1280 Firmware
Samsung exynos 1380
Samsung exynos 1380 Firmware
Samsung exynos 1480
Samsung exynos 1480 Firmware
Samsung exynos 1580
Samsung exynos 1580 Firmware
Samsung exynos 2200
Samsung exynos 2200 Firmware
Samsung exynos 2400
Samsung exynos 2400 Firmware
Samsung exynos 2500
Samsung exynos 2500 Firmware
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Wed, 04 Mar 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung exynos
Vendors & Products Samsung
Samsung exynos

Tue, 03 Mar 2026 17:15:00 +0000

Type Values Removed Values Added
Description An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of session->ncp_hdr_buf in __pilot_parsing_ncp() causes a denial of service.
References

Subscriptions

Samsung Exynos Exynos 1280 Exynos 1280 Firmware Exynos 1380 Exynos 1380 Firmware Exynos 1480 Exynos 1480 Firmware Exynos 1580 Exynos 1580 Firmware Exynos 2200 Exynos 2200 Firmware Exynos 2400 Exynos 2400 Firmware Exynos 2500 Exynos 2500 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-03-10T17:11:19.008Z

Reserved: 2025-10-23T00:00:00.000Z

Link: CVE-2025-62817

cve-icon Vulnrichment

Updated: 2026-03-10T17:10:38.516Z

cve-icon NVD

Status : Modified

Published: 2026-03-03T17:16:17.213

Modified: 2026-03-10T18:17:59.137

Link: CVE-2025-62817

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-03-04T14:54:57Z

Weaknesses