Race Condition Vulnerability in Samsung Mobile Processor Camera Driver
CVE-2026-33968

2.8LOW

Key Information:

Vendor

Samsung

Vendor
CVE Published:
14 September 2026

What is CVE-2026-33968?

A vulnerability has been identified in the camera driver of Samsung's Exynos mobile processors, which may be exploited through a Time-of-Check Time-of-Use (TOCTOU) race condition. This flaw allows unauthorized access due to out-of-bounds memory issues, potentially leading to unauthorized data manipulation or device instability. It is crucial for users and developers to remain vigilant and apply necessary updates to safeguard their devices.

Affected Version(s)

Exynos 1330 firmware 0 <= 2025-12-15

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.