High severity7.5NVD Advisory· Published Sep 5, 2022· Updated Jun 17, 2026
CVE-2022-39830
CVE-2022-39830
Description
sign_pFwInfo in Samsung mTower through 0.3.0 has a missing check on the return value of EC_KEY_set_public_key_affine_coordinates, leading to a denial of service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:samsung:mtower:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:samsung:mtower:*:*:*:*:*:*:*:*range: <=0.3.0
- (no CPE)
- (no CPE)range: <=0.3.0
Patches
Vulnerability mechanics
References
3- github.com/Samsung/mTower/blob/18f4b592a8a973ce5972f4e2658ea0f6e3686284/tools/fwinfogen.cnvdExploitThird Party Advisory
- github.com/Samsung/mTower/issues/77nvdExploitIssue TrackingThird Party Advisory
- www.openssl.org/docs/manmaster/man3/EC_KEY_set_public_key_affine_coordinates.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.