CVE-2022-44636

The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spoofing when a user is activating remote control by pressing a button. This is fixed in xxx72510, E9172511 for 2021 models, xxxA1000, 4x2A0200 for 2022 models.
References
Link Resource
https://samsung.com Vendor Advisory
https://samsungtvbounty.com/securityUpdates Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:t-oscpakuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-oscpakuc:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:t-oscpdeuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-oscpdeuc:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:samsung:t-oscpuabc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-oscpuabc:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:samsung:t-nkm2akuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nkm2akuc:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:samsung:t-nkm2deuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nkm2deuc:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:samsung:t-nkm2uabc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nkm2uabc:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:samsung:t-nklakuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nklakuc:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:samsung:t-nkldeuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nkldeuc:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:samsung:t-nkluabc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-nkluabc:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:samsung:t-ksu2eakuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ksu2eakuc:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:samsung:t-ksu2edeuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ksu2edeuc:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:samsung:t-ksu2euab_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ksu2euab:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:samsung:t-ptmakuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ptmakuc:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:samsung:t-ptmdeuc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ptmdeuc:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:samsung:t-ptmuabc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:t-ptmuabc:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-12-13 15:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-44636

Mitre link : CVE-2022-44636

CVE.ORG link : CVE-2022-44636


JSON object : View

Products Affected

samsung

  • t-oscpuabc_firmware
  • t-nkm2uabc
  • t-nklakuc_firmware
  • t-nklakuc
  • t-ptmuabc
  • t-ptmakuc_firmware
  • t-nkm2akuc
  • t-oscpakuc_firmware
  • t-nkm2uabc_firmware
  • t-oscpdeuc
  • t-ksu2edeuc
  • t-nkldeuc
  • t-ksu2eakuc
  • t-ksu2eakuc_firmware
  • t-ksu2euab_firmware
  • t-ksu2euab
  • t-nkm2deuc
  • t-nkldeuc_firmware
  • t-ptmuabc_firmware
  • t-ptmakuc
  • t-nkluabc_firmware
  • t-nkluabc
  • t-oscpuabc
  • t-oscpakuc
  • t-ptmdeuc
  • t-nkm2akuc_firmware
  • t-nkm2deuc_firmware
  • t-ptmdeuc_firmware
  • t-ksu2edeuc_firmware
  • t-oscpdeuc_firmware