Heap Buffer Overflow in MediaTek Modem 2G RRM
CVE-2021-32487

7.5HIGH

Key Information:

Vendor
Mediatek
Status
Vendor
CVE Published:
9 September 2021

Summary

A heap buffer overflow has been identified in the MediaTek modem's 2G Radio Resource Management (RRM). This vulnerability can lead to a remote denial of service condition without requiring any user interaction, allowing an attacker to potentially disrupt services by causing the system to crash. The problem is linked to internal memory management and can be exploited by a remote entity, highlighting the need for immediate patching. The issue has been documented under Patch ID: MOLY00500736 and Issue ID: ALPS04938456.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.