CVE-2025-43706

7.5

Samsung · Exynos Processors and Modems

A vulnerability in the L2 layer of various Samsung Exynos processors and modems allows unauthenticated attackers to cause a Denial of Service through incorrect handling of RRC packets.

Executive summary

A critical vulnerability in multiple Samsung Exynos processors and modems allows unauthenticated remote attackers to trigger a system-wide Denial of Service.

Vulnerability

The flaw exists within the L2 layer of the affected hardware components, where improper handling of Radio Resource Control (RRC) packets can be exploited by an unauthenticated attacker to force a device crash or service interruption.

Business impact

Successful exploitation of this vulnerability results in a Denial of Service, which can render mobile and wearable devices unresponsive or disconnect them from cellular networks. Given the CVSS score of 7.5, this high-severity flaw poses a significant risk to operational continuity for users relying on these devices for critical communication, potentially leading to widespread productivity loss or safety concerns.

Remediation

Immediate Action: Organizations and individual users should monitor the official Samsung Semiconductor security portal for firmware updates and apply them as soon as they are made available for specific device models.

Proactive Monitoring: Security teams should monitor for unusual network traffic patterns or repeated RRC-related errors in device logs that may indicate an attempt to trigger this vulnerability.

Compensating Controls: While direct patching is the only permanent solution, users in high-risk environments may consider limiting exposure to untrusted wireless networks where such packets could be injected.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

The reliance on hardware-level processing for RRC packets makes this vulnerability particularly difficult to mitigate without vendor-supplied firmware updates. Administrators must prioritize the deployment of these updates across their device fleet immediately upon release to ensure system stability and prevent potential service disruption by malicious actors.

More Samsung CVEs

Sources