CVE-2022-33711

Improper validation of integrity check vulnerability in Samsung USB Driver Windows Installer for Mobile Phones prior to version 1.7.56.0 allows local attackers to delete arbitrary directory using directory junction.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:android_usb_driver:*:*:*:*:*:windows:*:*

History

21 Nov 2024, 07:08

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year==2022&month=07 - Vendor Advisory () https://security.samsungmobile.com/serviceWeb.smsb?year==2022&month=07 - Vendor Advisory

19 Jul 2022, 14:37

Type Values Removed Values Added
CPE cpe:2.3:a:samsung:android_usb_driver:*:*:*:*:*:windows:*:*
CWE CWE-354
CVSS v2 : unknown
v3 : unknown
v2 : 2.1
v3 : 5.5
References (MISC) https://security.samsungmobile.com/serviceWeb.smsb?year==2022&month=07 - (MISC) https://security.samsungmobile.com/serviceWeb.smsb?year==2022&month=07 - Vendor Advisory

12 Jul 2022, 14:28

Type Values Removed Values Added
New CVE

Information

Published : 2022-07-12 14:15

Updated : 2024-11-21 07:08


NVD link : CVE-2022-33711

Mitre link : CVE-2022-33711

CVE.ORG link : CVE-2022-33711


JSON object : View

Products Affected

samsung

  • android_usb_driver
CWE
CWE-354

Improper Validation of Integrity Check Value