Integer Overflow Vulnerability in MediaTek WLAN Firmware
CVE-2023-20691
7.5HIGH
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 4 July 2023
Summary
An integer overflow vulnerability exists in MediaTek WLAN firmware, which may result in a system crash. This vulnerability allows for a remote denial of service, requiring no special execution privileges or user interaction, making it particularly concerning for users relying on efficient and stable wireless communication.
Affected Version(s)
MT6739, MT8167, MT8321, MT8365, MT8385, MT8666, MT8765, MT8788 Android 11.0, 12.0 / IOT-v23.0 (Yocto 4.0)
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved