Samsung

Mtower

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.09%
  • Veröffentlicht 05.09.2022 04:15:08
  • Zuletzt bearbeitet 21.11.2024 07:18:20

There is a NULL pointer dereference in aes256_encrypt in Samsung mTower through 0.3.0 due to a missing check on the return value of EVP_CIPHER_CTX_new.

Exploit
  • EPSS 1.09%
  • Veröffentlicht 05.09.2022 04:15:08
  • Zuletzt bearbeitet 21.11.2024 07:18:20

sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_public_key_affine_coordinates, leading to a denial of service.

  • EPSS 1.12%
  • Veröffentlicht 01.09.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:13:25

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.

  • EPSS 1.15%
  • Veröffentlicht 01.09.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:13:25

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_GetObjectInfo1.

Exploit
  • EPSS 1.01%
  • Veröffentlicht 11.08.2022 01:15:10
  • Zuletzt bearbeitet 21.11.2024 07:15:54

TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive Memory Allocation via a large len value, as demonstrated by a Numaker-PFM-M2351 TEE kernel crash.

Exploit
  • EPSS 0.4%
  • Veröffentlicht 04.08.2022 20:15:20
  • Zuletzt bearbeitet 21.11.2024 07:11:49

The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to trigger a memory overwrite, denial of service, and information disclosure by invoking the function TEE_PopulateTransientObject with ...