In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09028313; Issue ID: MSV-1630.
Attack Vector | Local |
Attack Complexity | Low |
Privileges Required | High |
User Interaction | None |
Scope | Unchanged |
Confidentiality Impact | High |
Integrity Impact | None |
Availability Impact | None |
Epss Score | 0.00043 |
---|---|
Epss Percentile | 0.1136 |
ریسک پائین:: این آسیب پذیری احتمال ارائه Exploit پائینی دارد. به روز رسانی و نظارت معمولی را لحاظ نمائید.
CPE | Vendor | Product | Version Start | Version End |
---|---|---|---|---|
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* | android | 12.0 | * | |
cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:* | mediatek | mt6761 | - | * |
cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:* | mediatek | mt6765 | - | * |
cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:* | mediatek | mt6768 | - | * |
cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:* | mediatek | mt6785 | - | * |
cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:* | mediatek | mt6789 | - | * |
cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:* | mediatek | mt6853 | - | * |
cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:* | mediatek | mt6873 | - | * |
cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:* | mediatek | mt6885 | - | * |
cpe:2.3:h:mediatek:mt8666:-:*:*:*:*:*:*:* | mediatek | mt8666 | - | * |
cpe:2.3:h:mediatek:mt8667:-:*:*:*:*:*:*:* | mediatek | mt8667 | - | * |
cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:* | mediatek | mt8673 | - | * |
cpe:2.3:h:mediatek:mt8675:-:*:*:*:*:*:*:* | mediatek | mt8675 | - | * |
cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* | mediatek | mt8678 | - | * |
لینک | منبع | تگ ها |
---|---|---|
https://corp.mediatek.com/product-security-bulletin/October-2024 | Vendor Advisory |