VYPR

Vendor CVEs

Mediatek

All CVEs

1,216 total · sorted by risk
  • CVE-2024-20112MedNov 4, 2024
    risk 0.29cvss 4.4epss 0.00

    In isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09071481; Issue ID: MSV-1730.

  • CVE-2024-20097MedOct 7, 2024
    risk 0.29cvss 4.4epss 0.00

    In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09028313; Issue ID: MSV-1630.

  • CVE-2024-20096MedOct 7, 2024
    risk 0.29cvss 4.4epss 0.00

    In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08996900; Issue ID: MSV-1635.

  • CVE-2024-20095MedOct 7, 2024
    risk 0.29cvss 4.4epss 0.00

    In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08996894; Issue ID: MSV-1636.

  • CVE-2024-20093MedOct 7, 2024
    risk 0.29cvss 4.4epss 0.00

    In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09028313; Issue ID: MSV-1699.

  • CVE-2024-20091MedOct 7, 2024
    risk 0.29cvss 4.4epss 0.00

    In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09028313; Issue ID: MSV-1701.

  • CVE-2024-20088MedSep 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08932099; Issue ID: MSV-1543.

  • CVE-2024-20085MedSep 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08944204; Issue ID: MSV-1560.

  • CVE-2024-20084MedSep 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08944210; Issue ID: MSV-1561.

  • CVE-2024-20071MedJun 3, 2024
    risk 0.29cvss 4.4epss 0.00

    In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00364733; Issue ID: MSV-1331.

  • CVE-2024-20058MedMay 6, 2024
    risk 0.29cvss 4.4epss 0.00

    In keyInstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580204; Issue ID: ALPS08580204.

  • CVE-2024-20052MedApr 1, 2024
    risk 0.29cvss 4.4epss 0.00

    In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541761.

  • CVE-2024-20050MedApr 1, 2024
    risk 0.29cvss 4.4epss 0.00

    In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541757.

  • CVE-2024-20049MedApr 1, 2024
    risk 0.29cvss 4.4epss 0.00

    In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541765; Issue ID: ALPS08541765.

  • CVE-2024-20041MedApr 1, 2024
    risk 0.29cvss 4.4epss 0.00

    In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541746; Issue ID: ALPS08541746.

  • CVE-2024-20036MedMar 4, 2024
    risk 0.29cvss 4.4epss 0.00

    In vdec, there is a possible permission bypass due to a permissions bypass. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08509508; Issue ID: ALPS08509508.

  • CVE-2024-20033MedMar 4, 2024
    risk 0.29cvss 4.4epss 0.00

    In nvram, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08499945; Issue ID: ALPS08499945.

  • CVE-2024-20030MedMar 4, 2024
    risk 0.29cvss 4.4epss 0.00

    In da, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541632; Issue ID: ALPS08541741.

  • CVE-2023-32881MedJan 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In battery, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08308070; Issue ID: ALPS08308080.

  • CVE-2023-32880MedJan 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In battery, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08308070; Issue ID: ALPS08308076.

  • CVE-2023-32878MedJan 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In battery, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08308070; Issue ID: ALPS08307992.

  • CVE-2023-32876MedJan 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08308612; Issue ID: ALPS08308612.

  • CVE-2023-32875MedJan 2, 2024
    risk 0.29cvss 4.4epss 0.00

    In keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08308607; Issue ID: ALPS08304217.

  • CVE-2023-32858MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In GZ, there is a possible information disclosure due to a missing data erasing. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07806008; Issue ID: ALPS07806008.

  • CVE-2023-32857MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In display, there is a possible out of bounds read due to an incorrect status check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993705; Issue ID: ALPS07993710.

  • CVE-2023-32856MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In display, there is a possible out of bounds read due to an incorrect status check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993705; Issue ID: ALPS07993705.

  • CVE-2023-32852MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In cameraisp, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07670971; Issue ID: ALPS07670971.

  • CVE-2023-32819MedOct 2, 2023
    risk 0.29cvss 4.4epss 0.00

    In display, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993705; Issue ID: ALPS08014138.

  • CVE-2023-32817MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044035.

  • CVE-2023-32816MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044032.

  • CVE-2023-32815MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801.

  • CVE-2023-32814MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08031947; Issue ID: ALPS08031947.

  • CVE-2023-32813MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017370; Issue ID: ALPS08017370.

  • CVE-2023-32810MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In bluetooth driver, there is a possible out of bounds read due to improper input validation. This could lead to local information leak with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07867212; Issue ID: ALPS07867212.

  • CVE-2023-32809MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In bluetooth driver, there is a possible read and write access to registers due to improper access control of register interface. This could lead to local leak of sensitive information with System execution privileges needed. User interaction is not needed for exploitation.…

  • CVE-2023-32808MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In bluetooth driver, there is a possible read and write access to registers due to improper access control of register interface. This could lead to local leak of sensitive information with System execution privileges needed. User interaction is not needed for exploitation.…

  • CVE-2023-32807MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588360; Issue ID: ALPS07588360.

  • CVE-2023-20836MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In camsys, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07505629; Issue ID: ALPS07505629.

  • CVE-2023-20833MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In keyinstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017756; Issue ID: ALPS08017764.

  • CVE-2023-20823MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In cmdq, there is a possible out of bounds read due to an incorrect status check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08021592; Issue ID: ALPS08021592.

  • CVE-2023-20818MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07460540; Issue ID: ALPS07460540.

  • CVE-2023-20813MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453549; Issue ID: ALPS07453549.

  • CVE-2023-20812MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944987; Issue ID: ALPS07944987.

  • CVE-2023-20810MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In IOMMU, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03692061; Issue ID: DTV03692061.

  • CVE-2023-20798MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In pda, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07147572; Issue ID: ALPS07421076.

  • CVE-2023-20796MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In power, there is a possible memory corruption due to an incorrect bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07929790; Issue ID: ALPS07929790.

  • CVE-2023-20793MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In apu, there is a possible memory corruption due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07767818; Issue ID: ALPS07767818.

  • CVE-2023-20790MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In nvram, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07740194; Issue ID: ALPS07740194.

  • CVE-2023-20789MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In jpeg, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07693193; Issue ID: ALPS07693193.

  • CVE-2023-20782MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In keyinstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07550104; Issue ID: ALPS07550103.

Page 22 of 25