Buffer Overflow in Wi-Fi Driver for Samsung Mobile and Wearable Processors
CVE-2025-52908

9.8CRITICAL

Key Information:

Vendor

Samsung

Vendor
CVE Published:
7 April 2026

What is CVE-2025-52908?

A buffer overflow vulnerability has been identified within the Wi-Fi driver of Samsung's Exynos processors, specifically affecting models 980, 850, 1280, 1330, 1380, 1480, 1580, and wearable processors W920, W930, and W1000. This vulnerability arises from the incorrect handling of the NL80211 vendor command, which can lead to potential exploitation through a specially crafted ioctl message. Users and organizations utilizing affected processors should ensure they keep abreast of security updates and apply necessary patches to mitigate risks associated with this vulnerability.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.