CVE-2022-40757: Buffer Overflow
A Buffer Access with Incorrect Length Value vulnerablity in the TEEMACComputeFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEEMACComputeFinal with an excessive size value of messageLen.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-40757?
The severity of CVE-2022-40757 is classified as high due to its potential to trigger a Denial of Service.
How do I fix CVE-2022-40757?
To fix CVE-2022-40757, update Samsung mTower to a version later than 0.3.0.
What causes CVE-2022-40757?
CVE-2022-40757 is caused by a buffer access issue due to an incorrect length value in the TEE_MACComputeFinal function.
What potential impact does CVE-2022-40757 have?
The potential impact of CVE-2022-40757 is a Denial of Service attack that can disrupt the functioning of trusted applications.
Who is affected by CVE-2022-40757?
CVE-2022-40757 affects users of Samsung mTower versions up to and including 0.3.0.