CVE-2022-22265

5.0MEDIUM

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

公開日: 1/10/2022更新日: 10/30/2025

CISA既知の悪用された脆弱性

Samsung devices with selected Exynos chipsets contain a use-after-free vulnerability that allows malicious memory write and code execution.

必要な対応:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

期限:

2023-10-09

説明

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

AI分析AIによる分析

影響を受ける製品

googleandroid
9.0
googleandroid
10.0
googleandroid
11.0
googleandroid
12.0
samsungexynos
-

参照