CVE-2022-36621
Description
Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
NULL pointer dereference in Samsung mTower TEE_AllocateTransientObject function (≤ v0.3.0) leads to denial of service.
Vulnerability
A NULL pointer dereference vulnerability exists in Samsung Electronics mTower versions v0.3.0 and earlier. The bug resides in the function TEE_AllocateTransientObject, where a null pointer is improperly dereferenced, causing a crash. The attack path is reachable via the Trusted Execution Environment (TEE) API interface exposed by mTower. [1]
Exploitation
An attacker must be able to invoke the TEE_AllocateTransientObject function through the mTower TEE API. No authentication is required if the attacker has local access to the system. The exploitation sequence involves crafting a call to the function with specific parameters that trigger the null pointer dereference. [1]
Impact
Successful exploitation results in a denial of service (DoS) due to system crash. The vulnerability does not lead to information disclosure, privilege escalation, or remote code execution as the impact is limited to a crash of the TEE subsystem. [1]
Mitigation
Samsung has not released a security update or advisory for this vulnerability as of the publication date. The latest affected version is mTower v0.3.0. No workarounds have been disclosed. Users should monitor Samsung's security update page for future patches. [1]
AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Samsung Electronics/mTowerdescription
- Range: <=0.3.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/Samsung/mTower/blob/18f4b592a8a973ce5972f4e2658ea0f6e3686284/tee/lib/libutee/tee_api_objects.cmitrex_refsource_MISC
- security.samsungmobile.com/securityUpdate.smsbmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.