Samsung Exynos Processors Information Leak Vulnerability via Malformed Uplink Scheduling Message

Vulnerability

A vulnerability exists in several Samsung mobile processors, wearable processors, and modems, including the Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, and Modem 5300. The issue arises because the user equipment (UE) improperly processes a malformed uplink scheduling message, leading to an unintentional information leak from the UE.

Impact

Exploitation of this vulnerability causes an information leak from the user equipment.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.7
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.