Impacts on Samsung Exynos Processors and Automotive Solutions
CVE-2023-37366

2.8LOW

Key Information:

Vendor

Samsung

Vendor
CVE Published:
14 September 2026

What is CVE-2023-37366?

A security flaw has been identified within certain Samsung Exynos processors that could potentially impact service integrity. In the Shannon SM Task, improper handling of a specific loop with an unreachable exit condition may lead to a failure in service termination when processing malformed SM messages. This vulnerability affects a wide range of Exynos chips used in mobile and automotive applications, raising concerns over the reliability of systems utilizing these processors.

Affected Version(s)

Exynos 850 firmware 0 <= 2023-04-28

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.