CNNVD-202511-156 Information

CNNVD ID

CNNVD-202511-156

CVE-2025-54329

  • CNNVD Published: 2025-11-04

Description (Chinese)

SAMSUNG Exynos 980等都是韩国三星(SAMSUNG)公司的产品。SAMSUNG Exynos 980是一款首个 5G 集成 Soc 产品,也是全球首款 A77 架构处理器。SAMSUNG Exynos 990是一款移动处理器。SAMSUNG Exynos 850是一款移动处理器。 SAMSUNG多款产品存在安全漏洞,该漏洞源于发送多有效载荷消息的函数缺少边界检查,可能导致堆溢出。以下产品受到影响:SAMSUNG Mobile Processor、Wearable Processor、Modem Exynos 980、990、850、2100、1280、2200、1330、1380、1480。

Description (English)

SAMSUNG Exynos 980 and so on are the products of the Korea Samsung company. SAMSUNG Exynos 980 is the first 5G integration Soc product and the global first A77 architecture processor. SAMSUNG Exynos 990 is a mobile processor. SAMSUNG Exynos 850 is a mobile processor. There is a safety loophole in many SAMSUNG products, which results from a lack of border checks for functions that send multi-charge messages, which may result in spills. The following products were affected: SAMSUNG Mobile Production, Worldable Production, Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

三星

Published

2025-11-04

Last Modified

2026-02-24

References

https://semiconductor.samsung.com/support/quality-support/product-security-updates/ https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-54329/ https://access.redhat.com/security/cve/cve-2025-54329

Patch

https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-54330/

Share on: