Description
An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. An out-of-bounds write vulnerability in the Exynos DPU driver (due to missing input length validation in color mode LUT parsing) leads to kernel memory corruption and potential privilege escalation.
Published: 2026-09-14
Score: 4.2 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Apply Firmware Patch
AI Analysis

Impact

An out‑of‑bounds write in the Exynos DPU driver is caused by missing input length validation during color mode LUT parsing. This flaw overwrites kernel memory, giving an attacker the ability to execute arbitrary code at elevated privileges, as identified by CWE‑787. The resulting kernel corruption can compromise confidentiality, integrity, and availability of the device and all services running on it.

Affected Systems

Samsung’s Exynos processor families—including the 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600 variants—are affected when running the Exynos 1280 firmware. The advisory does not list specific firmware versions, so users should verify the build against Samsung’s product security update repository.

Risk and Exploitability

The CVSS score of 4.2 indicates moderate severity, while the EPSS score of < 1% shows a very low but non‑zero likelihood of real‑world exploitation. The vulnerability is not catalogued in CISA KEV. The available attack vector likely requires an attacker to craft malformed LUT data that reaches the DPU driver, which would typically demand local or privileged access to the device’s GPU subsystem. In the absence of public exploitation evidence, the risk remains moderate but should not be ignored by systems that expose the DPU driver to untrusted input.

Generated by OpenCVE AI on September 15, 2026 at 16:06 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest firmware update available on Samsung’s product security update page to address the out‑of‑bounds write issue (CWE‑787).
  • If a firmware update is not yet available, consider disabling or limiting DPU driver usage in system configuration to reduce exposure until a patch is released, thereby preventing the kernel memory corruption identified by CWE‑787.
  • Enable kernel hardening features such as KASLR and SELinux enforcement to mitigate the risk of privilege escalation resulting from the CWE‑787 vulnerability.

Generated by OpenCVE AI on September 15, 2026 at 16:06 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in Samsung Exynos DPU Driver Enables Kernel Privilege Escalation

Mon, 14 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
Title Exynos DPU Driver Out-of-Bounds Write Leading to Kernel Memory Corruption

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 12:00:00 +0000

Type Values Removed Values Added
Title Exynos DPU Driver Out-of-Bounds Write Leading to Kernel Memory Corruption

Mon, 14 Sep 2026 01:30:00 +0000

Type Values Removed Values Added
Description An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. An out-of-bounds write vulnerability in the Exynos DPU driver (due to missing input length validation in color mode LUT parsing) leads to kernel memory corruption and potential privilege escalation.
First Time appeared Samsung
Samsung exynos 1280 Firmware
Weaknesses CWE-787
CPEs cpe:2.3:a:samsung:exynos_1280_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 1280 Firmware
References
Metrics cvssV3_1

{'score': 4.2, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:L'}


Subscriptions

Samsung Exynos 1280 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T18:14:17.852Z

Reserved: 2026-01-16T00:00:00.000Z

Link: CVE-2026-23791

cve-icon Vulnrichment

Updated: 2026-09-14T14:56:44.617Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T02:17:13.673

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-23791

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:15:15Z

Weaknesses