Description
An issue was discovered in NR RRC and L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, W920, W930, W1000, and Modem 5410. In the 5G baseband, a NULL Pointer Dereference occurs when processing a malformed RRC Reconfiguration message.
Published: 2026-09-14
Score: 3.5 Low
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service (device reboot or loss of baseband functionality)
Action: Apply Patch
AI Analysis

Impact

An issue has been discovered in the 5G baseband NR RRC layer of Samsung Exynos firmware. A malformed RRC Reconfiguration message triggers a NULL Pointer Dereference during processing, classified as CWE‑476. The fault causes the baseband to crash, resetting or rebooting the device, which results in a denial of service for the user. No evidence of code execution or data exfiltration is present.

Affected Systems

The flaw affects Samsung firmware variants including Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, wearable processors W920, W930, W1000, and Modem 5410. Any device running these basebands is considered vulnerable.

Risk and Exploitability

With a CVSS score of 3.5 the severity is low, and the EPSS score is below 1 %, indicating a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. An attacker would likely need to send a crafted RRC Reconfiguration packet over the cellular link or through a development interface to the baseband, requiring no special privileges on the device.

Generated by OpenCVE AI on September 15, 2026 at 15:53 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Download and install the latest Exynos firmware from Samsung’s official support site.
  • If possible, disable any development tools or APIs that allow the creation and injection of custom RRC messages to the baseband.
  • Until an updated firmware is available, isolate the delivery of malicious RRC packets, and monitor for unexpected reboots or crashes.

Generated by OpenCVE AI on September 15, 2026 at 15:53 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 16 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
Title NULL Pointer Dereference in 5G Baseband RRC Reconfiguration Handling

Mon, 14 Sep 2026 22:45:00 +0000

Type Values Removed Values Added
Title Null Pointer Dereference in 5G Baseband NR RRC Reconfiguration on Samsung Exynos 850 Firmware

Mon, 14 Sep 2026 12:45:00 +0000

Type Values Removed Values Added
Title Null Pointer Dereference in 5G Baseband NR RRC Reconfiguration on Samsung Exynos 850 Firmware

Mon, 14 Sep 2026 02:45:00 +0000

Type Values Removed Values Added
Description An issue was discovered in NR RRC and L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, W920, W930, W1000, and Modem 5410. In the 5G baseband, a NULL Pointer Dereference occurs when processing a malformed RRC Reconfiguration message.
First Time appeared Samsung
Samsung exynos 850 Firmware
Weaknesses CWE-476
CPEs cpe:2.3:a:samsung:exynos_850_firmware:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung exynos 850 Firmware
References
Metrics cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:L'}


Subscriptions

Samsung Exynos 850 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-16T14:29:17.009Z

Reserved: 2026-03-24T00:00:00.000Z

Link: CVE-2026-33970

cve-icon Vulnrichment

Updated: 2026-09-16T14:29:12.952Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T03:16:36.750

Modified: 2026-09-22T19:56:19.073

Link: CVE-2026-33970

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:00:17Z

Weaknesses