Out of Bounds Write Vulnerability in MediaTek WiFi Driver
CVE-2022-26443
6.7MEDIUM
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 1 August 2022
Summary
A vulnerability has been identified in the MediaTek WiFi driver that allows for a potential out of bounds write due to inadequate bounds checking. This security issue could enable an attacker to escalate privileges locally, requiring system execution rights. Notably, user interaction is not necessary for exploitation, increasing the risk factor associated with this vulnerability. A patch is available to address this issue, and users are advised to update their systems promptly to mitigate potential security threats.
Affected Version(s)
MT7603, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915, MT7916, MT7986, MT8981 7.6.2.3
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved