Skip to content

CVE-2026-23790

Double-free vulnerability in the Samsung Exynos DPU driver due to improper pointer management during DMA buffer reallocation, leading to kernel memory corruption and potential use-after-free.

This table summarizes key information about the CVE-2026-23790, including its identifier, title, affected products, versions, severity, reporting date, patched versions, and acknowledgement status.
Category Content
CVE ID CVE-2026-23790
Description Double-free vulnerability in the Samsung Exynos DPU driver due to improper pointer management during DMA buffer reallocation, leading to kernel memory corruption and potential use-after-free.
Affected Product Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, 2600
Affected Component DPU
Severity Medium
Reported Date 2025-12-29
Acknowledgment Joe