Out of Bounds Write Vulnerability in MediaTek Wi-Fi Driver
CVE-2022-26441
6.7MEDIUM
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 1 August 2022
Summary
A vulnerability exists within the Wi-Fi driver of MediaTek products that allows for an out of bounds write due to insufficient bounds checking. This flaw could enable a local attacker to escalate privileges to system execution level without requiring user interaction. It poses significant risk to systems utilizing affected versions of the Wi-Fi driver, highlighting the importance of applying security patches to mitigate potential exploitation.
Affected Version(s)
MT7603, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915, MT7916, MT7986, MT8981 7.6.2.3
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved