Description
An issue was discovered in camera in Samsung Mobile Processor Exynos 1330, 1380, 1480, 2400, 1580, and 2500. Sending a malformed message to the test_msg sysfs entry causes an out-of-bounds write, leading to denial of service.
Published: 2026-09-14
Score: 2.8 Low
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch
AI Analysis

Impact

An out‑of‑bounds write occurs when a malformed message is sent to the test_msg sysfs interface in Samsung Exynos camera firmware. The flaw arises from improper bounds checking (CWE‑787) and can corrupt kernel memory, causing a crash that forces the device to reboot or become unresponsive. The primary consequence is a denial of service; there is no evidence that confidentiality or integrity is directly compromised. Because the exploit is confined to the camera subsystem, it does not provide a straightforward path to arbitrary code execution.

Affected Systems

Samsung Exynos processors 1330, 1380, 1480, 2400, 1580, and 2500 are affected. Firmware versions that expose the test risk. Exact firmware version ranges are not disclosed, so all current releases containing the vulnerable interface should be reviewed.

Risk and Exploitability

The CVSS score of 2.8 indicates low overall severity, and the EPSS score is below 1%, showing a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog, so there is no evidence of widespread active exploitation. The likely attack vector is a local privileged user who can write to the sysfs entry; if the interface is exposed to unprivileged users or applications, remote exploitation becomes possible. Triggering the flaw requires writing a malicious payload to /sys/.../test_msg, which does not involve network activity, limiting remote exploitation potential.

Generated by OpenCVE AI on September 15, 2026 at 15:50 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Obtain and install the latest Samsung Exynos firmware update that fixes the test_msg bounds checking issue.
  • If a firmware update is not available, disable or remove the test_msg sysfs entry to prevent unauthorized writes.
  • Restrict permissions on the test_msg sysfs file to prevent non‑privileged users or applications from accessing it.
  • Regularly monitor device stability and apply any subsequent security patches from Samsung.

Generated by OpenCVE AI on September 15, 2026 at 15:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
Title Exynos Camera Firmware Out‑of‑Bounds Write Leads to Denial of Service

Mon, 14 Sep 2026 22:15:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Exynos Camera Sysfs Entry Causing DoS

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Exynos Camera Sysfs Entry Causing DoS

Mon, 14 Sep 2026 01:45:00 +0000

Type Values Removed Values Added
Description An issue was discovered in camera in Samsung Mobile Processor Exynos 1330, 1380, 1480, 2400, 1580, and 2500. Sending a malformed message to the test_msg sysfs entry causes an out-of-bounds write, leading to denial of service.
First Time appeared Samsung
Samsung exynos 1330 Firmware
Weaknesses CWE-787
CPEs cpe:2.3:a:samsung:exynos_1330_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 1330 Firmware
References
Metrics cvssV3_1

{'score': 2.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:L'}


Subscriptions

Samsung Exynos 1330 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T15:57:35.427Z

Reserved: 2026-03-24T00:00:00.000Z

Link: CVE-2026-33956

cve-icon Vulnrichment

Updated: 2026-09-14T15:57:31.010Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T02:17:14.230

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-33956

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:00:17Z

Weaknesses