Out of Bounds Read Vulnerability in Apusys by MediaTek
CVE-2021-0900
4.4MEDIUM
Summary
The vulnerability in Apusys arises from an incorrect bounds check, potentially allowing local information disclosure. Exploitation of this vulnerability does not require user interaction and could be executed with system execution privileges. Users should stay informed about potential risks and apply relevant patches, such as Patch ID ALPS05672107, to mitigate exposure.
Affected Version(s)
MT6873, MT6875, MT6877, MT6883, MT6885, MT6889, MT6891, MT6893, MT8195, MT8791, MT8797 Android 10.0, 11.0, 12.0
References
CVSS V3.1
Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved