Page 140 of 2383 results (0.014 seconds)

CVSS: 6.7EPSS: 0%CPEs: 33EXPL: 0

In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645181; Issue ID: ALPS07645181. • https://corp.mediatek.com/product-security-bulletin/May-2023 • CWE-20: Improper Input Validation •

CVSS: 4.1EPSS: 0%CPEs: 28EXPL: 0

In vcu, there is a possible leak of dma buffer due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645185; Issue ID: ALPS07645185. • https://corp.mediatek.com/product-security-bulletin/May-2023 •

CVSS: 5.5EPSS: 0%CPEs: 17EXPL: 0

In modem, there is a possible missing verification of NAS Security Mode Command Replay Attacks in LTE. This could local denial of service with no additional execution privileges. • https://www.unisoc.com/en_us/secy/announcementDetail/1654776866982133761 •

CVSS: 5.5EPSS: 0%CPEs: 17EXPL: 0

In modem, there is a possible missing verification of HashMME value in Security Mode Command. This could local denial of service with no additional execution privileges. • https://www.unisoc.com/en_us/secy/announcementDetail/1654776866982133761 • CWE-345: Insufficient Verification of Data Authenticity •

CVSS: 4.4EPSS: 0%CPEs: 16EXPL: 0

In modem control device, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. • https://www.unisoc.com/en_us/secy/announcementDetail/1654776866982133761 • CWE-787: Out-of-bounds Write •