Memory Management Driver Vulnerability in MediaTek Products
CVE-2021-0418

5.5MEDIUM

What is CVE-2021-0418?

A weakness in the memory management driver of MediaTek chipsets can lead to a potential system crash due to inadequate input validation. This vulnerability can result in a local denial of service, where no additional execution privileges or user interaction are necessary for exploitation. Immediate attention and patching are advised to mitigate risks associated with this issue. More details can be found in MediaTek's security bulletin.

Affected Version(s)

MT6580, MT6582E, MT6582H, MT6582T, MT6582W, MT6582_90, MT6589, MT6589TD, MT6592E, MT6592H, MT6592T, MT6592W, MT6592_90, MT6595, MT6731, MT6732, MT6735, MT6737, MT6739, MT6750, MT6750S, MT6752, MT6753, MT6755, MT6755S, MT6757, MT6757C, MT6757CD, MT6757CH, MT6758, MT6761, MT6762, MT6763, MT6765, MT6768, MT6769, MT6771, MT6779, MT6785, MT6795, MT6797, MT6799, MT6833, MT6853, MT6853T, MT6873, MT6875, MT6877, MT6883, MT6885, MT6889, MT6891, MT6893 Android 10.0, 11.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.