Description
An issue was discovered in NR RRC in Samsung Mobile Processor and Modem Exynos 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W1000, Modem 5300, Modem 5400, and Modem 5410. Incorrect handling of unauthenticated downlink RRC Setup messages can cause the baseband to crash.
Published: 2026-09-14
Score: 4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Apply Patch
AI Analysis

Impact

An incorrect handling of unauthenticated downlink RRC Setup messages within Samsung’s NR RRC implementation can cause the baseband processor to crash. This crash interrupts cellular communication, effectively denying service to the affected device. The flaw arises from a missing authentication check (CWE‑346).

Affected Systems

The vulnerability is known to affect Samsung’s Exynos 1080 firmware. The vendor’s description also references other processor families, but the CNA list explicitly states only the Exynos 1080 firmware as affected. Devices running firmware from that series without the official update are potentially vulnerable.

Risk and Exploitability

The CVSS score of 4.0 indicates moderate severity, and the EPSS is below 1%, meaning exploitation is considered unlikely at present. The flaw is not listed in the CISA KEV catalogue. The attack vector is inferred to be remote via the cellular network, where an adversary could transmit a crafted RRC Setup message to trigger the crash. No public exploitation has been reported, but the operational impact of a baseband crash is significant for carriers and end‑users.

Generated by OpenCVE AI on September 15, 2026 at 15:52 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest Samsung firmware update for the affected Exynos processors from the official Samsung security update pages.
  • If a firmware update for a specific device is not yet available, configure the device to accept only authenticated RRC messages or disable the vulnerable RRC handling path if such an option exists in the baseband configuration.
  • Monitor baseband crash logs and reboot or power‑cycle the device when instability is observed to maintain service continuity.

Generated by OpenCVE AI on September 15, 2026 at 15:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
Title Baseband Crash from Unauthenticated RRC Setup Message Handling in Exynos 1080 Firmware

Mon, 14 Sep 2026 22:45:00 +0000

Type Values Removed Values Added
Title Unauthenticated Downlink RRC Setup Message Causes Baseband Crash in Samsung Exynos Processors

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 12:30:00 +0000

Type Values Removed Values Added
Title Unauthenticated Downlink RRC Setup Message Causes Baseband Crash in Samsung Exynos Processors

Mon, 14 Sep 2026 01:30:00 +0000

Type Values Removed Values Added
Description An issue was discovered in NR RRC in Samsung Mobile Processor and Modem Exynos 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W1000, Modem 5300, Modem 5400, and Modem 5410. Incorrect handling of unauthenticated downlink RRC Setup messages can cause the baseband to crash.
First Time appeared Samsung
Samsung exynos 1080 Firmware
Weaknesses CWE-346
CPEs cpe:2.3:a:samsung:exynos_1080_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 1080 Firmware
References
Metrics cvssV3_1

{'score': 4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:L'}


Subscriptions

Samsung Exynos 1080 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T16:53:16.049Z

Reserved: 2026-01-16T00:00:00.000Z

Link: CVE-2026-23792

cve-icon Vulnrichment

Updated: 2026-09-14T16:52:54.792Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T02:17:13.807

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-23792

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:00:17Z

Weaknesses