Description
An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
Published: 2026-09-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: arbitrary kernel code execution
Action: Immediate patch
AI Analysis

Impact

A double‑free vulnerability in the Exynos Multi‑Media Framework (MFC) encoder driver arises from improper cleanup of dma_buf references during error handling. This flaw allows kernel memory corruption and may enable an attacker to execute arbitrary code with kernel privileges, classified as CWE‑415.

Affected Systems

Samsung devices that run Exynos firmware versions 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, as well as wearable models W920, W930, and W1000, are affected. Firmware containing the vulnerable MFC driver is impacted.

Risk and Exploitability

The CVSS score of 7.8 indicates high severity. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog. Attackers can potentially trigger the flaw via the MFC encoder interface from user space, requiring the ability to cause an encoding error, thereby creating a local privilege escalation path to kernel code execution.

Generated by OpenCVE AI on September 14, 2026 at 11:55 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Samsung firmware update that includes the fix for CVE-2026-23789.
  • If a firmware update is not yet available, disable the MFC encoder driver or block its use until a patch is released.
  • Monitor Samsung’s security update portal for new releases and apply updates as soon as they are released.

Generated by OpenCVE AI on September 14, 2026 at 11:55 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 14 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Double‑Free in Exynos MFC Encoder Driver Enables Kernel Memory Corruption

Mon, 14 Sep 2026 01:30:00 +0000

Type Values Removed Values Added
Description An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
First Time appeared Samsung
Samsung exynos 850 Firmware
Weaknesses CWE-415
CPEs cpe:2.3:a:samsung:exynos_850_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 850 Firmware
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Samsung Exynos 850 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T00:55:53.911Z

Reserved: 2026-01-16T00:00:00.000Z

Link: CVE-2026-23789

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T02:17:13.397

Modified: 2026-09-14T02:17:13.397

Link: CVE-2026-23789

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-14T12:00:14Z

Weaknesses