Wi-Fi Driver Vulnerability in MediaTek Products
CVE-2022-32663

7.5HIGH

Summary

A vulnerability exists within the Wi-Fi driver of MediaTek products, which may cause a system crash due to a null pointer dereference. Exploiting this flaw can lead to a remote denial of service, allowing attackers to disrupt the system without requiring any additional execution privileges. Importantly, user interaction is not necessary for this vulnerability to be exploited, making it a significant concern for the affected environments. Ensure your systems are updated with the latest patches to mitigate this risk.

Affected Version(s)

MT5221, MT7603, MT7613, MT7615, MT7622, MT7628, MT7629, MT7668, MT7902, MT7915, MT7916, MT7921, MT7981, MT7986, MT8167S, MT8175, MT8362A, MT8365, MT8385, MT8518S, MT8532, MT8788 7.6.6.1

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.