CVE-2022-25821 — Out-of-bounds Read in Mobile Devices
Severity
7.1HIGHNVD
CNA3.3
EPSS
0.0%
top 95.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 10
Latest updateMar 11
Description
Improper use of SMS buffer pointer in Shannon baseband prior to SMR Mar-2022 Release 1 allows OOB read.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2
Affected Packages2 packages
▶CVEListV5samsung_mobile/samsung_mobile_devicesQ(10), R(11), S(12) devices with Exynos CP chipsets — SMR Mar-2022 Release 1