Remote Denial of Service Vulnerability in MediaTek WLAN Firmware
CVE-2023-20693
7.5HIGH
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 4 July 2023
Summary
A vulnerability exists in MediaTek's WLAN firmware that may cause a system crash due to an uncaught exception, leading to a potential remote denial of service. This issue can be exploited without requiring any user interaction, making it a significant concern for affected users. Affected systems might experience downtime or instability, impacting network operations significantly. Users are advised to apply the available patches to mitigate this vulnerability.
Affected Version(s)
MT6739, MT6895, MT6983, MT8167, MT8168, MT8195, MT8321, MT8365, MT8385, MT8666, MT8765, MT8781, MT8788 Android 11.0, 12.0 / IOT-v23.0 (Yocto 4.0)
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved