Out of Bounds Write Vulnerability in MediaTek Products
CVE-2023-32821
6.7MEDIUM
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 2 October 2023
Summary
A vulnerability in MediaTek's video processing software allows for an out of bounds write due to a permissions bypass, which could enable local escalation of privileges. The exploitation of this vulnerability does not require user interaction, thereby increasing its threat potential. Users should apply the provided patches to secure their systems against unauthorized access.
Affected Version(s)
MT6761, MT6763, MT6765, MT6768, MT6771, MT6779, MT6785, MT6853, MT6873, MT6885 Android 12.0, 13.0
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved