An issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1080, 1280, 2200, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000. A race condition in the VTS driver results in an out-of-bounds read, leading to an information leak.
References
| Link | Resource |
|---|---|
| https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
| https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-54325/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
Configuration 9 (hide)
| AND |
|
Configuration 10 (hide)
| AND |
|
Configuration 11 (hide)
| AND |
|
History
07 Nov 2025, 12:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory | |
| References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-54325/ - Vendor Advisory | |
| CPE | cpe:2.3:h:samsung:exynos_2400:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w1000:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2500:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2500_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w930_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w920:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w1000_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1080_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w920_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w930:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_2200:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_2400_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1080:-:*:*:*:*:*:*:* |
|
| First Time |
Samsung exynos 1080 Firmware
Samsung exynos 2200 Samsung exynos W930 Samsung exynos 1380 Samsung exynos 1480 Samsung exynos 1080 Samsung exynos 2200 Firmware Samsung exynos 1480 Firmware Samsung exynos 2500 Firmware Samsung exynos 1580 Samsung exynos 1380 Firmware Samsung exynos W1000 Firmware Samsung Samsung exynos 1280 Firmware Samsung exynos 2400 Samsung exynos W920 Samsung exynos 2400 Firmware Samsung exynos 1280 Samsung exynos W1000 Samsung exynos W920 Firmware Samsung exynos W930 Firmware Samsung exynos 1580 Firmware Samsung exynos 2500 |
04 Nov 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
| CWE | CWE-125 |
04 Nov 2025, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 18:16
Updated : 2025-11-07 12:56
NVD link : CVE-2025-54325
Mitre link : CVE-2025-54325
CVE.ORG link : CVE-2025-54325
JSON object : View
Products Affected
samsung
- exynos_2500_firmware
- exynos_2400
- exynos_2400_firmware
- exynos_2500
- exynos_1380_firmware
- exynos_1380
- exynos_1580_firmware
- exynos_w920
- exynos_2200_firmware
- exynos_1080
- exynos_1280_firmware
- exynos_w920_firmware
- exynos_w930_firmware
- exynos_1480
- exynos_2200
- exynos_w1000_firmware
- exynos_1480_firmware
- exynos_1280
- exynos_w1000
- exynos_1080_firmware
- exynos_w930
- exynos_1580
CWE
CWE-125
Out-of-bounds Read
