Description
An issue was discovered in CustOS Driver in Samsung Mobile Processor Exynos 1580. Requesting oversized shared memory from the custos_iwc device enables out-of-bounds read and write, potentially leading to memory corruption or information leakage.
Published: 2026-09-14
Score: 4.2 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Memory Corruption / Information Leakage
Action: Patch Update
AI Analysis

Impact

An out-of-bounds read and write occurs in the CustOS driver when a process requests an oversized shared memory region from the custos_iwc device. The resulting memory corruption or information leakage can affect the integrity and confidentiality of data stored in the same address space, potentially destabilizing the device. Based on the description, it is inferred that the vulnerability arises from insufficient bounds checking when allocating shared memory, allowing a crafted request size to overflow internal buffers.

Affected Systems

The vulnerability applies to Samsung mobile processors running Exynos 1580 firmware that incorporate the CustOS driver. No specific firmware versions are listed as affected, so all device configurations using Exynos 1580 firmware that ship the CustOS driver are potentially impacted.

Risk and Exploitability

The CVSS score of 4.2 places the vulnerability in the moderate range, and the EPSS score of < 1% indicates a very low likelihood of exploitation in the wild. The CVE is not listed in the CISA KEV catalog. Based on the description, it is inferred that exploitation requires the ability to send a crafted request to the user‑ or process‑level privileges with access to the device node; a more privileged attacker might trigger kernel‑level effects. No public exploitation is reported, but the flaw could be abused by any process that can supply a crafted request size to the driver.

Generated by OpenCVE AI on September 15, 2026 at 15:50 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Install any firmware update from Samsung that fixes CVE-2026-33957.
  • If no patch is available, restrict or remove the custos_iwc device from the system, preventing non‑privileged processes from accessing it.
  • Validate the requested shared memory size in any application that communicates with custos_iwc, ensuring it does not exceed documented limits.

Generated by OpenCVE AI on September 15, 2026 at 15:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Shared Memory Access in CustOS Driver on Exynos 1580

Mon, 14 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read/Write via Oversized Shared Memory Request in CustOS Driver

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read/Write via Oversized Shared Memory Request in CustOS Driver

Mon, 14 Sep 2026 01:45:00 +0000

Type Values Removed Values Added
Description An issue was discovered in CustOS Driver in Samsung Mobile Processor Exynos 1580. Requesting oversized shared memory from the custos_iwc device enables out-of-bounds read and write, potentially leading to memory corruption or information leakage.
First Time appeared Samsung
Samsung exynos 1580 Firmware
Weaknesses CWE-787
CPEs cpe:2.3:a:samsung:exynos_1580_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 1580 Firmware
References
Metrics cvssV3_1

{'score': 4.2, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:L'}


Subscriptions

Samsung Exynos 1580 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T18:14:04.557Z

Reserved: 2026-03-24T00:00:00.000Z

Link: CVE-2026-33957

cve-icon Vulnrichment

Updated: 2026-09-14T14:56:42.577Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T02:17:14.390

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-33957

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:00:17Z

Weaknesses