📦 Exynos 1380 Firmware

by Samsung

🔍 What is Exynos 1380 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-27807

CRITICAL CVSS 9.1 Jan 5, 2026

A critical vulnerability in multiple Samsung Exynos processors allows attackers to execute arbitrary code or cause denial of service via malformed NAS packets due to missing length checks. This affect...

CVE-2025-23097

CRITICAL CVSS 9.1 Jun 3, 2025

CVE-2025-23097 is a critical memory corruption vulnerability in Samsung's Exynos 1380 mobile processor where missing length validation allows attackers to write data beyond allocated memory boundaries...

CVE-2025-27891

CRITICAL CVSS 9.1 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to perform out-of-bounds reads via malformed NAS packets. This affects Samsung mobile devices, wearables, and modems usi...

CVE-2025-49495

HIGH CVSS 8.4 Jan 5, 2026

A buffer overflow vulnerability in the WiFi driver of Samsung Exynos 1380, 1480, 2400, and 1580 mobile processors allows attackers to execute arbitrary code or cause denial of service. This affects Sa...

CVE-2025-53966

HIGH CVSS 8.4 Jan 5, 2026

A buffer overflow vulnerability in Samsung Exynos mobile processors allows attackers to execute arbitrary code or cause denial of service by sending specially crafted IOCTL messages. This affects devi...

CVE-2024-55568

HIGH CVSS 7.5 Oct 20, 2025

A missing NULL pointer check in Samsung Exynos processors allows attackers to cause Denial of Service by sending malformed MM (Mobility Management) packets. This affects Samsung mobile devices, wearab...

CVE-2025-26781

HIGH CVSS 7.5 Oct 20, 2025

A vulnerability in Samsung Exynos processors' L2 layer incorrectly handles RLC AM PDUs, allowing attackers to cause denial of service. This affects Samsung mobile devices, wearables, and modems using ...

CVE-2025-23100

HIGH CVSS 7.5 Jun 3, 2025

A NULL pointer dereference vulnerability in Samsung Exynos mobile processors allows attackers to cause a denial of service by triggering a system crash. This affects devices using Exynos 1280, 2200, 1...

CVE-2025-23102

HIGH CVSS 8.8 Jun 3, 2025

A double free vulnerability in Samsung Exynos mobile processors allows local attackers to escalate privileges by exploiting memory corruption. This affects devices using Exynos 980, 990, 1080, 2100, 1...

CVE-2025-26783

HIGH CVSS 7.5 May 14, 2025

A vulnerability in Samsung's RRC (Radio Resource Control) implementation across multiple Exynos processors allows incorrect handling of undefined values, leading to Denial of Service. This affects Sam...

CVE-2025-26785

HIGH CVSS 7.5 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length validation. This affects Samsung mobile devices, ...

CVE-2024-50600

HIGH CVSS 7.5 Mar 6, 2025

This vulnerability allows attackers to send malformed messages through the Wi-Fi driver to Samsung Exynos processors, causing out-of-bounds memory access due to missing boundary checks. It affects Sam...

CVE-2024-52923

HIGH CVSS 7.5 Mar 6, 2025

A boundary check vulnerability in Samsung's NRMM component for multiple Exynos processors allows denial of service attacks. Attackers can exploit this by sending specially crafted DL NAS Transport mes...

CVE-2024-52924

HIGH CVSS 7.5 Mar 6, 2025

This vulnerability in Samsung Exynos processors allows attackers to execute arbitrary code by sending specially crafted Registration Accept messages. It affects Samsung mobile devices, wearables, and ...

CVE-2024-39890

HIGH CVSS 8.1 Dec 2, 2024

A memory corruption vulnerability in Samsung Exynos baseband software allows attackers to write data beyond allocated buffer boundaries by exploiting improper length validation in Call Control message...

CVE-2024-39343

HIGH CVSS 7.0 Dec 2, 2024

A vulnerability in Samsung Exynos baseband software allows denial of service attacks by exploiting improper length validation in the Mobility Management module. This affects Samsung mobile devices and...

CVE-2024-29153

HIGH CVSS 8.1 Jul 9, 2024

This vulnerability in Samsung Exynos processors and modems allows attackers to exploit incorrect LTE NAS message authorization, forcing devices to downgrade to older network generations and enabling r...

CVE-2023-50806

HIGH CVSS 8.4 Jul 9, 2024

This vulnerability allows out-of-bounds heap buffer access in the SIM Proactive Command handler of affected Samsung processors and modems. Attackers could potentially execute arbitrary code, read sens...

CVE-2024-32503

HIGH CVSS 8.4 Jun 7, 2024

A Use-After-Free vulnerability in Samsung Exynos mobile and wearable processors allows attackers to potentially execute arbitrary code or cause system crashes by exploiting improper memory deallocatio...

CVE-2023-49928

HIGH CVSS 7.5 Jun 5, 2024

This vulnerability in Samsung Exynos baseband software allows improper state checking in RRC (Radio Resource Control) protocols, potentially leading to sensitive information disclosure. It affects Sam...

CVE-2023-41112

HIGH CVSS 7.1 Nov 8, 2023

A buffer overflow vulnerability in Samsung Exynos processors allows attackers to cause abnormal termination (crash) of mobile devices by sending specially crafted data to the RLC task and module. This...

CVE-2023-36481

HIGH CVSS 7.5 Aug 28, 2023

This vulnerability in Samsung Exynos processors allows attackers to trigger an infinite loop by exploiting improper handling of PPP length parameter inconsistencies. This affects mobile devices and we...

CVE-2025-58345

MEDIUM CVSS 5.5 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to cause kernel memory exhaustion through unbounded memory allocation when writing to /proc/driver/unifi0/ap_certif_11ax_mode. This ...

CVE-2025-58346

MEDIUM CVSS 5.5 Feb 3, 2026

This vulnerability allows attackers to cause kernel memory exhaustion through unbounded memory allocation in the Wi-Fi driver of affected Samsung Exynos processors. Attackers can trigger this by writi...

CVE-2025-58347

MEDIUM CVSS 5.5 Feb 3, 2026

This vulnerability allows attackers to cause kernel memory exhaustion through unbounded memory allocation in the Wi-Fi driver of affected Samsung Exynos processors. Attackers can trigger this by writi...

CVE-2025-58348

MEDIUM CVSS 5.5 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to cause kernel memory exhaustion through unbounded memory allocation. Attackers can trigger this by writing a large buffer to a spe...

CVE-2025-58340

MEDIUM CVSS 6.2 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to cause kernel memory exhaustion through unbounded memory allocation. Attackers can trigger this by writing large buffers to /proc/...

CVE-2025-58341

MEDIUM CVSS 6.2 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to cause kernel memory exhaustion through unbounded memory allocation. Attackers can trigger this by writing a large buffer to /proc...

CVE-2025-58342

MEDIUM CVSS 6.2 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to cause kernel memory exhaustion through unbounded memory allocation. Attackers can trigger a denial-of-service condition by writin...

CVE-2025-58343

MEDIUM CVSS 5.5 Feb 3, 2026

This vulnerability in Samsung Exynos Wi-Fi drivers allows attackers to trigger unbounded memory allocation through a /proc filesystem operation, potentially causing kernel memory exhaustion and system...

CVE-2025-58344

MEDIUM CVSS 6.2 Feb 3, 2026

This vulnerability allows attackers to cause kernel memory exhaustion through unbounded memory allocation in the Wi-Fi driver's /proc/driver/unifi0/conn_log_event_burst_to_us write operation. It affec...

CVE-2025-52515

MEDIUM CVSS 5.1 Jan 5, 2026

A race condition vulnerability in the issimian device driver for Samsung Exynos processors allows out-of-bounds memory access when using the camera. This affects Samsung mobile and wearable devices wi...

CVE-2025-52516

MEDIUM CVSS 6.2 Jan 5, 2026

A kernel address dereference vulnerability in the issimian device driver for Samsung Exynos processors allows attackers to cause denial of service. This affects Samsung mobile devices and wearables us...

CVE-2025-52517

MEDIUM CVSS 5.9 Jan 5, 2026

A race condition vulnerability in the issimian device driver for Samsung Exynos processors causes a double free, leading to denial of service. This affects Samsung mobile and wearable devices using Ex...

CVE-2025-53965

MEDIUM CVSS 5.3 Dec 3, 2025

A buffer overflow vulnerability in Samsung Exynos processors allows attackers to cause a fatal error by sending malformed SOR transparent container data. This affects Samsung mobile devices, wearables...

CVE-2025-48025

MEDIUM CVSS 4.3 Oct 20, 2025

An improper access control vulnerability in Samsung Exynos processors allows unauthorized access to log files. This affects devices using Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and...

CVE-2025-32100

MEDIUM CVSS 6.5 Sep 2, 2025

A buffer overflow vulnerability in Samsung Exynos processors allows attackers to execute arbitrary code or cause denial of service via specially crafted ROHC packets. This affects Samsung mobile devic...

CVE-2024-45183

MEDIUM CVSS 6.5 Aug 4, 2025

This vulnerability in Samsung Exynos mobile processors allows attackers to write data beyond allocated memory boundaries when processing JPEG images. It affects devices using Exynos 2100, 1280, 2200, ...

CVE-2025-23096

MEDIUM CVSS 6.5 Jun 4, 2025

A double free vulnerability in Samsung Exynos mobile processors allows local attackers to escalate privileges on affected devices. This affects smartphones and tablets using Exynos 1280, 2200, 1380, 1...

CVE-2024-49197

MEDIUM CVSS 6.5 May 27, 2025

This vulnerability in Samsung Exynos Wi-Fi chips allows out-of-bounds memory access due to missing boundary checks in the STOP_KEEP_ALIVE_OFFLOAD function. Attackers could potentially execute arbitrar...

CVE-2025-22377

MEDIUM CVSS 6.5 May 27, 2025

A heap-based out-of-bounds write vulnerability in Samsung Exynos processors' GPRS protocol implementation allows attackers to write data beyond allocated memory boundaries. This affects Samsung mobile...

CVE-2024-56427

MEDIUM CVSS 6.5 May 14, 2025

This vulnerability in Samsung Exynos processors allows attackers to trigger out-of-bounds memory access by sending malformed RRC (Radio Resource Control) packets. This affects mobile devices and weara...

CVE-2025-26784

MEDIUM CVSS 6.5 May 14, 2025

A memory corruption vulnerability in Samsung Exynos processors allows attackers to write data beyond allocated buffer boundaries due to missing length validation. This affects Samsung mobile devices, ...

CVE-2024-48883

MEDIUM CVSS 4.3 Jan 13, 2025

This vulnerability in Samsung Exynos processors allows information leakage when a malformed uplink scheduling message is incorrectly handled. It affects Samsung mobile devices, wearables, and modems u...

CVE-2024-45185

MEDIUM CVSS 5.1 Nov 4, 2024

This vulnerability allows attackers to execute arbitrary code or cause denial of service on affected Samsung Exynos processors due to a heap overflow in GPRS protocol handling. It affects Samsung mobi...

CVE-2024-45184

MEDIUM CVSS 6.2 Oct 11, 2024

This vulnerability is a heap buffer overflow in Samsung's USAT component affecting multiple Exynos chipsets used in mobile devices, wearables, and modems. An attacker could exploit this to cause a den...

CVE-2024-25074

MEDIUM CVSS 5.9 Sep 10, 2024

A pointer dereference vulnerability in Samsung Exynos baseband software allows attackers to cause denial of service by exploiting improper pointer validation in the Session Management module. This aff...

CVE-2024-27367

MEDIUM CVSS 4.4 Sep 9, 2024

This vulnerability in Samsung Exynos wearable and mobile processors allows attackers to trigger an integer overflow and heap over-read in the slsi_rx_scan_ind() function due to missing input validatio...

CVE-2024-27383

MEDIUM CVSS 6.7 Sep 9, 2024

A heap overflow vulnerability in Samsung Exynos mobile processors allows attackers to overwrite heap memory by sending unvalidated data to the slsi_get_scan_extra_ies() function. This affects Samsung ...

CVE-2024-27364

MEDIUM CVSS 4.4 Sep 9, 2024

A heap over-read vulnerability in Samsung Exynos mobile and wearable processors allows attackers to read memory beyond allocated buffers. This affects devices using Exynos 980, 850, 1080, 1280, 1380, ...

CVE-2024-27386

MEDIUM CVSS 6.7 Jul 9, 2024

This vulnerability in Samsung Exynos 1380 and 1480 processors allows attackers to perform heap overwrite attacks by sending specially crafted data to the slsi_handle_nan_rx_event_log_ind function. Thi...

CVE-2024-27360

MEDIUM CVSS 6.0 Jul 9, 2024

A length validation vulnerability in multiple Samsung Exynos mobile processors allows attackers to trigger denial of service conditions. This affects devices using the listed Exynos chipsets, primaril...