CVE-2025-52908 - Vulnerability Analysis
CriticalCVSS: 9.8Last Updated: April 9, 2026
Samsung Exynos - Buffer Overflow
Published: April 7, 2026Updated: April 9, 2026Remote Exploitable
Overview
Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000 contain a buffer overflow caused by incorrect handling of the NL80211 vendor command in the Wi-Fi driver, letting attackers cause memory corruption, exploit requires crafted ioctl message.
Severity & Score
Severity: Critical
CVSS Score: 9.8
Impact
Attackers can cause memory corruption via buffer overflow, potentially leading to denial of service or code execution.
Mitigation
Update to the latest available version with the fix.
References
Related Resources
Details
- CVE ID
- CVE-2025-52908
- Severity
- Critical
- CVSS Score
- 9.8
- Type
- buffer_overflow
- Status
- unconfirmed
CWE
- CWE-120
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H