CVE-2025-27891CRITICAL 9.1EPSS p32.6%
CVE-2025-27891CVE-2025-27891
Description
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400. The lack of a length check leads to out-of-bounds reads via malformed NAS packets.
Scoring
| CVSS 3.1 | 9.1 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
| EPSS | 0.40% probability of exploitation · percentile 32.6% · 2026-08-03T12:00:16Z |
| Published | 2025-05-14 |
| Last modified | 2025-07-01 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Out-of-bounds Readcwe-125 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.