7.5
CVE-2025-54329
- EPSS 0.06%
- Veröffentlicht 04.11.2025 00:00:00
- Zuletzt bearbeitet 07.11.2025 12:56:18
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. The function used to send a multiple-payloads message (including an SMS message) lacks bounds checking, which can lead to a heap overflow.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Exynos 1280 Firmware Version-
Samsung ≫ Exynos 1330 Firmware Version-
Samsung ≫ Exynos 1380 Firmware Version-
Samsung ≫ Exynos 1480 Firmware Version-
Samsung ≫ Exynos 1580 Firmware Version-
Samsung ≫ Exynos 2100 Firmware Version-
Samsung ≫ Exynos 2200 Firmware Version-
Samsung ≫ Exynos 2400 Firmware Version-
Samsung ≫ Exynos 2500 Firmware Version-
Samsung ≫ Exynos 850 Firmware Version-
Samsung ≫ Exynos 980 Firmware Version-
Samsung ≫ Exynos 990 Firmware Version-
Samsung ≫ Exynos W930 Firmware Version-
Samsung ≫ Exynos W920 Firmware Version-
Samsung ≫ Exynos W1000 Firmware Version-
Samsung ≫ Modem 5123 Firmware Version-
Samsung ≫ Modem 5300 Firmware Version-
Samsung ≫ Modem 5400 Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.199 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-122 Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().