Description
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. An out-of-bounds write occurs due to a mismatch between the TP-UDHI and UDL values when processing an SMS TP-UD packet.
Published: 2026-04-07
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote code execution or device corruption
Action: Immediate Patch
AI Analysis

Impact

This vulnerability is an out‑of‑bounds write triggered by a mismatch between the TP‑UDHI and UDL values when parsing an SMS TP‑UD packet. The memory corruption can lead to arbitrary code execution, privilege escalation, or a device reboot, and because it occurs during SMS processing the effect is available to an attacker without physical access.

Affected Systems

The flaw affects a broad range of Samsung Exynos mobile processors, wearable processors, and modem chips, including Exynos 980, 990, 850, 1080, 1280, 1330, 1380, 1480, 1580, 2100, 2200, 2400, 2500, 9110, W1000, W920, W930, and modem modules 5123, 5300, and 5400. All current releases of these chips are considered vulnerable until Samsung issues an update.

Risk and Exploitability

The CVSS score of 9.8 signals a critical security risk, while the EPSS of <1 % indicates that the likelihood of exploitation is low at present. Because the vulnerability is triggered by an SMS, the attack surface is remote via the network, and the lack of KEV listing means no public exploit has been reported. Nevertheless, operators should assume that a malicious SMS payload could trigger the overflow and take appropriate mitigations.

Generated by OpenCVE AI on April 13, 2026 at 16:31 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Samsung firmware update for all affected Exynos devices specified in the Samsung Mobile Processor, Wearable Processor, and Modem update documentation.
  • If an update is unavailable, disable or restrict SMS reception on the device or use network filtering to block SMS packets containing TP‑UD data.
  • Monitor device logs for signs of memory corruption or unexpected reboots that could indicate exploitation.
  • Apply any vendor service packs or additional security patches as soon as they are released.

Generated by OpenCVE AI on April 13, 2026 at 16:31 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 14 Apr 2026 16:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in SMS Packet Processing on Samsung Exynos Chips

Mon, 13 Apr 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Samsung exynos 1080
Samsung exynos 1080 Firmware
Samsung exynos 1280
Samsung exynos 1280 Firmware
Samsung exynos 1330
Samsung exynos 1330 Firmware
Samsung exynos 1380
Samsung exynos 1380 Firmware
Samsung exynos 1480
Samsung exynos 1480 Firmware
Samsung exynos 1580
Samsung exynos 1580 Firmware
Samsung exynos 2100
Samsung exynos 2100 Firmware
Samsung exynos 2200
Samsung exynos 2200 Firmware
Samsung exynos 2400
Samsung exynos 2400 Firmware
Samsung exynos 2500
Samsung exynos 2500 Firmware
Samsung exynos 850
Samsung exynos 850 Firmware
Samsung exynos 9110
Samsung exynos 9110 Firmware
Samsung exynos 980
Samsung exynos 980 Firmware
Samsung exynos 990
Samsung exynos 990 Firmware
Samsung exynos Modem 5123
Samsung exynos Modem 5123 Firmware
Samsung exynos Modem 5300
Samsung exynos Modem 5300 Firmware
Samsung exynos Modem 5400
Samsung exynos Modem 5400 Firmware
Samsung exynos W1000
Samsung exynos W1000 Firmware
Samsung exynos W920
Samsung exynos W920 Firmware
Samsung exynos W930
Samsung exynos W930 Firmware
CPEs cpe:2.3:h:samsung:exynos_1080:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1330:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2100:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2500:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_850:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_9110:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_980:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_990:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_modem_5123:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_modem_5300:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_modem_5400:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w1000:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w920:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_w930:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_2500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_850_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_9110_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_980_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_990_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_modem_5123_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_modem_5300_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_modem_5400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w920_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:exynos_w930_firmware:-:*:*:*:*:*:*:*
Vendors & Products Samsung exynos 1080
Samsung exynos 1080 Firmware
Samsung exynos 1280
Samsung exynos 1280 Firmware
Samsung exynos 1330
Samsung exynos 1330 Firmware
Samsung exynos 1380
Samsung exynos 1380 Firmware
Samsung exynos 1480
Samsung exynos 1480 Firmware
Samsung exynos 1580
Samsung exynos 1580 Firmware
Samsung exynos 2100
Samsung exynos 2100 Firmware
Samsung exynos 2200
Samsung exynos 2200 Firmware
Samsung exynos 2400
Samsung exynos 2400 Firmware
Samsung exynos 2500
Samsung exynos 2500 Firmware
Samsung exynos 850
Samsung exynos 850 Firmware
Samsung exynos 9110
Samsung exynos 9110 Firmware
Samsung exynos 980
Samsung exynos 980 Firmware
Samsung exynos 990
Samsung exynos 990 Firmware
Samsung exynos Modem 5123
Samsung exynos Modem 5123 Firmware
Samsung exynos Modem 5300
Samsung exynos Modem 5300 Firmware
Samsung exynos Modem 5400
Samsung exynos Modem 5400 Firmware
Samsung exynos W1000
Samsung exynos W1000 Firmware
Samsung exynos W920
Samsung exynos W920 Firmware
Samsung exynos W930
Samsung exynos W930 Firmware

Fri, 10 Apr 2026 10:00:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in Samsung Exynos Processors During SMS Packet Processing

Thu, 09 Apr 2026 14:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 08 Apr 2026 20:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in Samsung Exynos Processors During SMS Packet Processing
First Time appeared Samsung
Samsung exynos
Weaknesses CWE-787
Vendors & Products Samsung
Samsung exynos

Tue, 07 Apr 2026 15:15:00 +0000

Type Values Removed Values Added
Description An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. An out-of-bounds write occurs due to a mismatch between the TP-UDHI and UDL values when processing an SMS TP-UD packet.
References

Subscriptions

Samsung Exynos Exynos 1080 Exynos 1080 Firmware Exynos 1280 Exynos 1280 Firmware Exynos 1330 Exynos 1330 Firmware Exynos 1380 Exynos 1380 Firmware Exynos 1480 Exynos 1480 Firmware Exynos 1580 Exynos 1580 Firmware Exynos 2100 Exynos 2100 Firmware Exynos 2200 Exynos 2200 Firmware Exynos 2400 Exynos 2400 Firmware Exynos 2500 Exynos 2500 Firmware Exynos 850 Exynos 850 Firmware Exynos 9110 Exynos 9110 Firmware Exynos 980 Exynos 980 Firmware Exynos 990 Exynos 990 Firmware Exynos Modem 5123 Exynos Modem 5123 Firmware Exynos Modem 5300 Exynos Modem 5300 Firmware Exynos Modem 5400 Exynos Modem 5400 Firmware Exynos W1000 Exynos W1000 Firmware Exynos W920 Exynos W920 Firmware Exynos W930 Exynos W930 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-04-09T13:44:57.981Z

Reserved: 2025-10-23T00:00:00.000Z

Link: CVE-2025-62818

cve-icon Vulnrichment

Updated: 2026-04-09T13:44:43.677Z

cve-icon NVD

Status : Analyzed

Published: 2026-04-07T15:17:34.060

Modified: 2026-04-13T15:31:39.197

Link: CVE-2025-62818

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-14T16:41:08Z

Weaknesses