logo

CVE-2022-22265 - Samsung Mobile Devices Use-After-Free Vulnerability

Project:Samsung

Product:Mobile Devices

Date Added:2023-09-18Due Date:2023-10-09

Vulnerability Name

Samsung Mobile Devices Use-After-Free Vulnerability

Description

Samsung devices with selected Exynos chipsets contain a use-after-free vulnerability that allows malicious memory write and code execution.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes

https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=1

https://nvd.nist.gov/vuln/detail/CVE-2022-22265