Buffer Overflow Vulnerability in Samsung Mobile and Wearable Processors
CVE-2026-33960

2.8LOW

Key Information:

Vendor

Samsung

Vendor
CVE Published:
14 September 2026

What is CVE-2026-33960?

A flaw has been identified within Samsung’s Exynos 1330, 1380, 1480, 1580, 1680, W920, W930, and W1000 processors. This vulnerability arises from a malformed ioctl command sent to the Wi-Fi interface device, which can lead to incorrect buffer size allocation. Consequently, this can create an out-of-bounds write situation, potentially resulting in a denial of service (DoS) condition. Users of affected devices should take precautionary measures to secure their systems.

Affected Version(s)

Exynos 1330 firmware 0 <= 2025-12-18

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.