Out-of-Bounds Write Vulnerability in Samsung Mobile Processors
CVE-2026-33956

2.8LOW

Key Information:

Vendor

Samsung

Vendor
CVE Published:
14 September 2026

What is CVE-2026-33956?

A vulnerability has been identified in the camera component of Samsung's Exynos 1330, 1380, 1480, 2400, 1580, and 2500 mobile processors. This issue arises when a specially crafted message is sent to the test_msg sysfs entry, resulting in an out-of-bounds write condition. Exploiting this vulnerability can lead to a denial of service, potentially causing interruptions in device functionality. Users of affected Samsung mobile devices are encouraged to monitor and apply necessary updates to mitigate risks.

Affected Version(s)

Exynos 1330 firmware 0 <= 2025-12-02

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.