CVE-2025-58344
Unknown Unknown - Not Provided

BaseFortify

Vulnerability report for CVE-2025-58344, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-02-03

Last updated on: 2026-02-05

Assigner: MITRE

Description

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W920, W930 and W1000. There is unbounded memory allocation in a /proc/driver/unifi0/conn_log_event_burst_to_us write operation, leading to kernel memory exhaustion.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-02-03
Last Modified
2026-02-05
Generated
2026-07-26
AI Q&A
2026-02-03
EPSS Evaluated
2026-07-25
NVD
EUVD

Affected Vendors & Products

Showing 22 associated CPEs
Vendor Product Version / Range
samsung exynos_980_firmware *
samsung exynos_980 *
samsung exynos_850_firmware *
samsung exynos_850 *
samsung exynos_1080_firmware *
samsung exynos_1080 *
samsung exynos_1280_firmware *
samsung exynos_1280 *
samsung exynos_1330_firmware *
samsung exynos_1330 *
samsung exynos_1380_firmware *
samsung exynos_1380 *
samsung exynos_1480_firmware *
samsung exynos_1480 *
samsung exynos_1580_firmware *
samsung exynos_1580 *
samsung exynos_w920_firmware *
samsung exynos_w920 *
samsung exynos_w930_firmware *
samsung exynos_w930 *
samsung exynos_w1000_firmware *
samsung exynos_w1000 *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-770 The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2025-58344 is a medium-severity vulnerability in the Wi-Fi drivers of multiple Samsung Exynos processors. It is caused by an unbounded memory allocation when writing to the /proc/driver/unifi0/conn_log_event_burst_to_us interface. This flaw can lead to kernel memory exhaustion.

Detection Guidance

I don't know

Impact Analysis

This vulnerability can cause kernel memory exhaustion, which may result in denial of service or system instability on affected devices using the vulnerable Samsung Exynos Wi-Fi drivers.

Compliance Impact

I don't know

Mitigation Strategies

I don't know

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-58344. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart