Out of Bounds Write Vulnerability in MediaTek Wi-Fi Products
CVE-2022-32640
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 3 January 2023
Summary
An out of bounds write vulnerability exists in MediaTek's Meta Wi-Fi products due to the lack of a proper bounds check. This flaw allows attackers to potentially escalate local privileges to execute system-level commands, making it a serious concern for users. The exploitation of this vulnerability does not require user interaction, thus increasing its risk profile. Affected parties are encouraged to apply the security patch provided in ALPS07441652 to secure their systems.
Affected Version(s)
MT6580, MT6731, MT6735, MT6737, MT6739, MT6753, MT6757, MT6757C, MT6757CD, MT6757CH, MT6761, MT6762, MT6763, MT6765, MT6768, MT6769, MT6771, MT6779, MT6781, MT6785, MT6789, MT6833, MT6853, MT6853T, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6891, MT6893, MT6895, MT6983, MT8167, MT8168, MT8173, MT8185, MT8321, MT8362A, MT8365, MT8385, MT8666, MT8675, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791, MT8791T, MT8797 Android 11.0, 12.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved