← לוח פגיעויות

CVE-2026-23791

בינונית 4.2

תיאור (מקור, אנגלית)

An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. An out-of-bounds write vulnerability in the Exynos DPU driver (due to missing input length validation in color mode LUT parsing) leads to kernel memory corruption and potential privilege escalation.

מדדים

CVSS 3.1
4.2 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:L
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-2/10/2026
CWE
CWE-787

קישורים