Given the TEE is compromised and controlled by the attacker,...
Vulnerability Description
Given the TEE is compromised and controlled by the attacker, improper state maintenance in StrongBox allows attackers to change Android ROT during device boot cycle after compromising TEE. The patch is applied in Galaxy S22 to prevent change of Android ROT after first initialization at boot time.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-28793
Credits & Attribution
No credits recorded in the NVD database.
More from Samsung Mobile
View All →Affected Vendor
Samsung Mobile
View all reports →