Description
An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
Published: 2026-09-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: arbitrary kernel code execution
Action: Immediate patch
AI Analysis

Impact

A double‑free bug in the MFC encoder driver of Samsung Exynos 850 firmware can corrupt kernel memory. If successfully triggered, the flaw permits an attacker to run arbitrary code with kernel privileges, a vulnerability classified as CWE‑415.

Affected Systems

Samsung devices that run the Exynos 850 firmware are affected. The flaw exists within the driver shipped with that firmware and therefore all hardware platforms using that firmware are impacted.

Risk and Exploitability

The CVSS score of 7.8 indicates high severity, while the EPSS score of < 1% shows a very low likelihood of exploitation at present. Based on the description, it is inferred that the flaw can be triggered from user‑space code that causes an encoding error, creating a local privilege escalation path to kernel code execution. The vulnerability is not currently listed in CISA’s KEV catalog.

Generated by OpenCVE AI on September 15, 2026 at 17:06 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest Samsung firmware update that contains the patch for CVE-2026-23789.
  • If a patch is unavailable, disable the MFC encoder driver or block its usage until an update is released.
  • Regularly check Samsung’s security update portal for new firmware releases and apply updates as soon as they are available.

Generated by OpenCVE AI on September 15, 2026 at 17:06 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Title Double‑Free Vulnerability in Samsung Exynos 850 MFC Encoder Driver

Mon, 14 Sep 2026 23:30:00 +0000

Type Values Removed Values Added
Title Double‑Free in Exynos MFC Encoder Driver Enables Kernel Memory Corruption

Mon, 14 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Double‑Free in Exynos MFC Encoder Driver Enables Kernel Memory Corruption

Mon, 14 Sep 2026 01:30:00 +0000

Type Values Removed Values Added
Description An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
First Time appeared Samsung
Samsung exynos 850 Firmware
Weaknesses CWE-415
CPEs cpe:2.3:a:samsung:exynos_850_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 850 Firmware
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Samsung Exynos 850 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-16T14:24:26.056Z

Reserved: 2026-01-16T00:00:00.000Z

Link: CVE-2026-23789

cve-icon Vulnrichment

Updated: 2026-09-16T14:24:21.014Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T02:17:13.397

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-23789

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T17:15:14Z

Weaknesses