CVE-2022-36621: Null Pointer Dereference
Published Sep 1, 2022
·Updated
Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEEAllocateTransientObject.
Affected Software
1 affected component
samsung mTower<=0.3.0
Event History
Sep 1, 2022
CVE Published
via MITRE·08:04 PM
Data Sourced
via MITRE·08:04 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-36621?
CVE-2022-36621 is classified as a high severity vulnerability due to the potential for denial of service through NULL pointer dereference.
2
How do I fix CVE-2022-36621?
To fix CVE-2022-36621, users should update Samsung mTower to version 0.3.1 or later.
3
What versions of Samsung mTower are affected by CVE-2022-36621?
CVE-2022-36621 affects Samsung mTower versions up to and including 0.3.0.
4
What is the impact of CVE-2022-36621?
The impact of CVE-2022-36621 includes the possibility of application crashes or unexpected behavior due to a NULL pointer dereference.
5
Is CVE-2022-36621 being actively exploited?
As of now, there are no public reports indicating active exploitation of CVE-2022-36621.