VYPR

Vendor CVEs

Mediatek

All CVEs

1,199 total · sorted by risk
  • CVE-2021-0894MedDec 17, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05672038.

  • CVE-2021-0893MedDec 17, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05687474.

  • CVE-2021-0679MedDec 17, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05687781.

  • CVE-2021-0678MedDec 17, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05722511.

  • CVE-2021-0904MedDec 15, 2021
    risk 0.44cvss 6.7epss 0.00

    In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06076938; Issue ID: ALPS06076938.

  • CVE-2021-0671MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05664273; Issue ID: ALPS05664273.

  • CVE-2021-0670MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05654663; Issue ID: ALPS05654663.

  • CVE-2021-0669MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05681550; Issue ID: ALPS05681550.

  • CVE-2021-0668MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05670521; Issue ID: ALPS05670521.

  • CVE-2021-0667MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05670581; Issue ID: ALPS05670581.

  • CVE-2021-0664MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In ccu, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05827158; Issue ID: ALPS05827158.

  • CVE-2021-0658MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05672107.

  • CVE-2021-0657MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In apusys, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672103; Issue ID: ALPS05672103.

  • CVE-2021-0656MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In edma driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05709376; Issue ID: ALPS05709376.

  • CVE-2021-0655MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In mdlactl driver, there is a possible memory corruption due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05673424; Issue ID: ALPS05673424.

  • CVE-2021-0629MedNov 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05776625; Issue ID: ALPS05776625.

  • CVE-2021-0663MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.01

    In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844458; Issue ID: ALPS05844458.

  • CVE-2021-0662MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.01

    In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844434; Issue ID: ALPS05844434.

  • CVE-2021-0661MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.01

    In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844413; Issue ID: ALPS05844413.

  • CVE-2021-0634MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.00

    In display driver, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594994; Issue ID: ALPS05594994.

  • CVE-2021-0633MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.00

    In display driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05585423; Issue ID: ALPS05585423.

  • CVE-2021-0625MedOct 25, 2021
    risk 0.44cvss 6.7epss 0.00

    In ccu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594996; Issue ID: ALPS05594996.

  • CVE-2021-0628MedAug 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In OMA DRM, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05722454; Issue ID: ALPS05722454.

  • CVE-2021-0627MedAug 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In OMA DRM, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05722434; Issue ID: ALPS05722434.

  • CVE-2021-0626MedAug 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In ged, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05687510; Issue ID: ALPS05687510.

  • CVE-2021-0407MedAug 18, 2021
    risk 0.44cvss 6.7epss 0.00

    In clk driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05479659; Issue ID: ALPS05479659.

  • CVE-2021-0344MedFeb 4, 2021
    risk 0.44cvss 6.7epss 0.00

    In mtkpower, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-10, Android-11; Patch…

  • CVE-2025-20642MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2025-20641MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2025-20639MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2025-20635MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20142MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20141MedFeb 3, 2025
    risk 0.43cvss 6.6epss 0.00

    In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20145MedJan 6, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20144MedJan 6, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20143MedJan 6, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20074MedJun 3, 2024
    risk 0.43cvss 6.6epss 0.00

    In dmc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08668110; Issue ID: MSV-1333.

  • CVE-2024-20073MedJun 3, 2024
    risk 0.43cvss 6.6epss 0.00

    In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00367704; Issue ID: MSV-1411.

  • CVE-2024-20072MedJun 3, 2024
    risk 0.43cvss 6.6epss 0.00

    In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00364732; Issue ID: MSV-1332.

  • CVE-2024-20054MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.

  • CVE-2024-20046MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In battery, there is a possible escalation of privilege due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08485622; Issue ID: ALPS08485622.

  • CVE-2024-20044MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541784; Issue ID: ALPS08541784.

  • CVE-2024-20043MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541781; Issue ID: ALPS08541781.

  • CVE-2024-20042MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541780; Issue ID: ALPS08541780.

  • CVE-2024-20028MedMar 4, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541632; Issue ID: ALPS08541687.

  • CVE-2022-26468MedSep 6, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20074MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (partition), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed…

  • CVE-2022-20073MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a integer underflow. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20069MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20060MedMar 10, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible permission bypass due to a missing proper image authentication. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is…

Page 15 of 24