Samsung Exynos Processors and Modems Bounds Checking Vulnerability in SOR Container Decoding

Vulnerability

A bounds checking vulnerability has been identified in the function that decodes the SOR transparent container within various Samsung mobile processors, wearable processors, and modems. This vulnerability can lead to a fatal error. Affected processors include Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, and W1000. The vulnerable modems are 5123, 5300, and 5400.

Impact

Exploitation of this vulnerability can cause a fatal error, potentially leading to a denial of service condition.

Added: Dec 3, 2025, 5:19 PM
Updated: Dec 3, 2025, 8:29 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
4.7
remediation
0.0
relevance
1.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.