PT-2026-5918 · Samsung · Exynos W930+10

Published

2026-02-03

·

Updated

2026-02-05

·

CVE-2025-58346

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Samsung Mobile Processor and Wearable Processor Exynos 980 Samsung Mobile Processor and Wearable Processor Exynos 850 Samsung Mobile Processor and Wearable Processor Exynos 1080 Samsung Mobile Processor and Wearable Processor Exynos 1280 Samsung Mobile Processor and Wearable Processor Exynos 1330 Samsung Mobile Processor and Wearable Processor Exynos 1380 Samsung Mobile Processor and Wearable Processor Exynos 1480 Samsung Mobile Processor and Wearable Processor Exynos 1580 Samsung Mobile Processor and Wearable Processor Exynos W920 Samsung Mobile Processor and Wearable Processor Exynos W930 Samsung Mobile Processor and Wearable Processor Exynos W1000
Description An issue exists due to unbounded memory allocation through a large buffer in a /proc/driver/unifi0/send addts write operation. This can lead to kernel memory exhaustion. The /proc/driver/unifi0/send addts is an API endpoint used for sending additional timestamp information. The vulnerability occurs when a large buffer is provided as input to this endpoint, causing the system to allocate an excessive amount of memory. The send addts function is responsible for handling the incoming data and allocating memory to store it.
Recommendations For Samsung Mobile Processor and Wearable Processor Exynos 980, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 850, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1080, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1280, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1330, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1380, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1480, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos 1580, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos W920, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos W930, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint. For Samsung Mobile Processor and Wearable Processor Exynos W1000, avoid sending large buffers to the /proc/driver/unifi0/send addts endpoint.

Fix

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-58346

Affected Products

Exynos 1080
Exynos 1280
Exynos 1330
Exynos 1380
Exynos 1480
Exynos 1580
Exynos 850
Exynos 980
Exynos W1000
Exynos W920
Exynos W930