DoS via tee_obj_free in Samsung mTower <=0.3.0
CVE-2022-40761 Published on September 16, 2022

The function tee_obj_free in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_AllocateOperation with a disturbed heap layout, related to utee_cryp_obj_alloc.

NVD


Products Associated with CVE-2022-40761

Want to know whenever a new CVE is published for Samsung Mtower? stack.watch will email you.

 

Exploit Probability

EPSS
0.82%
Percentile
74.17%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.