
CVE-2022-30711
https://notcve.org/view.php?id=CVE-2022-30711
07 Jun 2022 — Improper validation vulnerability in FeedsInfo prior to SMR Jun-2022 Release 1 allows attackers to launch certain activities. Una vulnerabilidad de comprobación inapropiada en FeedsInfo versiones anteriores a SMR Jun-2022 Release 1, permite a atacantes iniciar determinadas actividades • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=6 • CWE-20: Improper Input Validation •

CVE-2022-30710
https://notcve.org/view.php?id=CVE-2022-30710
07 Jun 2022 — Improper validation vulnerability in RemoteViews prior to SMR Jun-2022 Release 1 allows attackers to launch certain activities. Una vulnerabilidad de comprobación inapropiada en RemoteViews versiones anteriores a SMR Jun-2022 Release 1, permite a atacantes iniciar determinadas actividades • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=6 • CWE-20: Improper Input Validation •

CVE-2022-30709
https://notcve.org/view.php?id=CVE-2022-30709
07 Jun 2022 — Improper input validation check logic vulnerability in SECRIL prior to SMR Jun-2022 Release 1 allows attackers to trigger crash. Una vulnerabilidad de la lógica de comprobación de la comprobación de entradas en SECRIL versiones anteriores a SMR Jun-2022 Release 1, permite a atacantes iniciar un bloqueo • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=6 • CWE-20: Improper Input Validation •

CVE-2022-28794
https://notcve.org/view.php?id=CVE-2022-28794
07 Jun 2022 — Sensitive information exposure in low-battery dumpstate log prior to SMR Jun-2022 Release 1 allows local attackers to get SIM card information. Una exposición de información confidencial en low-battery dumpstate log versiones anteriores a SMR Jun-2022 Release 1, permite a atacantes locales conseguir información de la tarjeta SIM • https://security.samsungmobile.com/securityUpdate.smsb?year=2022&month=6 • CWE-213: Exposure of Sensitive Information Due to Incompatible Policies CWE-668: Exposure of Resource to Wrong Sphere •

CVE-2022-21761
https://notcve.org/view.php?id=CVE-2022-21761
06 Jun 2022 — In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479532; Issue ID: ALPS06479532. En apusys driver, se presenta un posible bloqueo del sistema debido a un desbordamiento de enteros. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-190: Integer Overflow or Wraparound •

CVE-2022-21759
https://notcve.org/view.php?id=CVE-2022-21759
06 Jun 2022 — In power service, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06419106; Issue ID: ALPS06419077. En power service, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-787: Out-of-bounds Write •

CVE-2022-21758
https://notcve.org/view.php?id=CVE-2022-21758
06 Jun 2022 — In ccu, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06439600; Issue ID: ALPS06439600. En ccu, se presenta una posible corrupción de memoria debido a una doble liberación. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-415: Double Free •

CVE-2022-21757
https://notcve.org/view.php?id=CVE-2022-21757
06 Jun 2022 — In WIFI Firmware, there is a possible system crash due to a missing count check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06468894; Issue ID: ALPS06468894. En WIFI Firmware, se presenta un posible bloqueo del sistema debido a una falta de comprobación del recuento. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-354: Improper Validation of Integrity Check Value •

CVE-2022-21756
https://notcve.org/view.php?id=CVE-2022-21756
06 Jun 2022 — In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06535950; Issue ID: ALPS06535950. En WLAN driver, se presenta una posible lectura fuera de límites debido a una comprobación de límites incorrecta. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-125: Out-of-bounds Read •

CVE-2022-21755
https://notcve.org/view.php?id=CVE-2022-21755
06 Jun 2022 — In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545464; Issue ID: ALPS06545464. En WLAN driver, se presenta una posible lectura fuera de límites debido a una comprobación de límites incorrecta. • https://corp.mediatek.com/product-security-bulletin/June-2022 • CWE-125: Out-of-bounds Read •