MEDIUM · 4.6

CVE-2022-44636

The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spoofing when a user is activating remote control by pressing a button. This is fix...

Vulnerability Description

The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spoofing when a user is activating remote control by pressing a button. This is fixed in xxx72510, E9172511 for 2021 models, xxxA1000, 4x2A0200 for 2022 models.

CVSS Score

4.6

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
LOW
Integrity
LOW
Availability
NONE

Affected Products

VendorProductVersions
SamsungT-Oscpakuc Firmware-
SamsungT-Oscpakuc-
SamsungT-Oscpdeuc Firmware-
SamsungT-Oscpdeuc-
SamsungT-Oscpuabc Firmware-
SamsungT-Oscpuabc-
SamsungT-Nkm2Akuc Firmware-
SamsungT-Nkm2Akuc-
SamsungT-Nkm2Deuc Firmware-
SamsungT-Nkm2Deuc-
SamsungT-Nkm2Uabc Firmware-
SamsungT-Nkm2Uabc-
SamsungT-Nklakuc Firmware-
SamsungT-Nklakuc-
SamsungT-Nkldeuc Firmware-
SamsungT-Nkldeuc-
SamsungT-Nkluabc Firmware-
SamsungT-Nkluabc-
SamsungT-Ksu2Eakuc Firmware-
SamsungT-Ksu2Eakuc-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-44636?

CVE-2022-44636 is a vulnerability with a CVSS score of 4.6 (MEDIUM). The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spoofing when a user is activating remote control by pressing a button. This is fix...

How severe is CVE-2022-44636?

CVE-2022-44636 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-44636?

Check the references section above for vendor advisories and patch information. Affected products include: Samsung T-Oscpakuc Firmware, Samsung T-Oscpakuc, Samsung T-Oscpdeuc Firmware, Samsung T-Oscpdeuc, Samsung T-Oscpuabc Firmware.