TROYANOSYVIRUS
Back to CVEs

CVE-2022-22265

MEDIUMCISA KEV
5.0

Description

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

CVE Details

CVSS v3.1 Score5.0
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L
Attack VectorLOCAL
ComplexityHIGH
Privileges RequiredLOW
User InteractionREQUIRED
Published1/10/2022
Last Modified10/30/2025
Sourcekev
Honeypot Sightings0

CISA KEV

VendorSamsung
ProductMobile Devices
Vulnerability NameSamsung Mobile Devices Use-After-Free Vulnerability
KEV Date Added2023-09-18
Remediation Due Date2023-10-09
Ransomware UseUnknown

Affected Products

google:androidsamsung:exynos

Weaknesses (CWE)

CWE-703

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.