Out of Bounds Read Vulnerability in Apusys by Mediatek
CVE-2021-0666

4.4MEDIUM

Summary

A vulnerability exists in Apusys that could allow for out of bounds read due to an improper bounds check. This situation may facilitate local information disclosure, potentially allowing unauthorized access to sensitive data. Successful exploitation of this vulnerability requires system execution privileges but does not necessitate user interaction. It is advised to implement the patch identified by ALPS05672086 to mitigate risks associated with this flaw.

Affected Version(s)

MT6873, MT6875, MT6877, MT6883, MT6885, MT6889, MT6891, MT6893, MT8195, MT8791, MT8797, MT9636, MT9638, MT9639, MT9650, MT9652, MT9669, MT9686, MT9970, MT9980, MT9981 Android 11.0

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.