Impact
An issue has been discovered in the 5G baseband NR RRC layer of Samsung Exynos firmware. A malformed RRC Reconfiguration message triggers a NULL Pointer Dereference during processing, classified as CWE‑476. The fault causes the baseband to crash, resetting or rebooting the device, which results in a denial of service for the user. No evidence of code execution or data exfiltration is present.
Affected Systems
The flaw affects Samsung firmware variants including Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, wearable processors W920, W930, W1000, and Modem 5410. Any device running these basebands is considered vulnerable.
Risk and Exploitability
With a CVSS score of 3.5 the severity is low, and the EPSS score is below 1 %, indicating a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. An attacker would likely need to send a crafted RRC Reconfiguration packet over the cellular link or through a development interface to the baseband, requiring no special privileges on the device.
OpenCVE Enrichment