CVE-2025-62817

An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of session->ncp_hdr_buf in __pilot_parsing_ncp() causes a denial of service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:samsung:exynos_2500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:exynos_2500:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-03 17:16

Updated : 2026-03-10 18:17


NVD link : CVE-2025-62817

Mitre link : CVE-2025-62817

CVE.ORG link : CVE-2025-62817


JSON object : View

Products Affected

samsung

  • exynos_1280_firmware
  • exynos_2400
  • exynos_2500_firmware
  • exynos_1380
  • exynos_1480_firmware
  • exynos_1580
  • exynos_2500
  • exynos_1380_firmware
  • exynos_1480
  • exynos_1580_firmware
  • exynos_2200_firmware
  • exynos_1280
  • exynos_2200
  • exynos_2400_firmware
CWE
CWE-476

NULL Pointer Dereference