Out-of-Bounds Array Access in Samsung Exynos Camera Driver
CVE-2026-33967

2.8LOW

Key Information:

Vendor

Samsung

Vendor
CVE Published:
14 September 2026

What is CVE-2026-33967?

A security issue has been identified within the camera driver of Samsung's Exynos mobile processors, encompassing multiple models. This vulnerability stems from an out-of-bounds array access during the error-handling process, which can lead to unauthorized memory manipulation. Such memory corruption poses potential risks to device integrity and user data, emphasizing the need for timely updates and patches to mitigate exposure.

Affected Version(s)

Exynos 1330 firmware 0 <= 2025-12-15

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.