Samsung Exynos Baseband Crash via NR RRC Unauth Setup
CVE-2026-23792 Published on September 14, 2026
An issue was discovered in NR RRC in Samsung Mobile Processor and Modem Exynos 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W1000, Modem 5300, Modem 5400, and Modem 5410. Incorrect handling of unauthenticated downlink RRC Setup messages can cause the baseband to crash.
Vulnerability Analysis
CVE-2026-23792 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity, and a small impact on availability.
Weakness Type
Origin Validation Error
The software does not properly verify that the source of data or communication is valid.
Products Associated with CVE-2026-23792
Want to know whenever a new CVE is published for Samsung Exynos 1080 Firmware? stack.watch will email you.
Affected Versions
Samsung Exynos 1080 firmware:- Before and including 2025-10-22 is affected.