Page 16 of 280 results (0.005 seconds)

CVSS: 4.4EPSS: 0%CPEs: 58EXPL: 0

In keyinstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017756; Issue ID: ALPS08017756. • https://corp.mediatek.com/product-security-bulletin/August-2023 •

CVSS: 6.7EPSS: 0%CPEs: 39EXPL: 0

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07978760; Issue ID: ALPS07363410. • https://corp.mediatek.com/product-security-bulletin/July-2023 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 35EXPL: 0

In vow, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07611449; Issue ID: ALPS07441735. • https://corp.mediatek.com/product-security-bulletin/July-2023 • CWE-862: Missing Authorization •

CVSS: 6.7EPSS: 0%CPEs: 35EXPL: 0

In vow, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441796; Issue ID: ALPS07441796. • https://corp.mediatek.com/product-security-bulletin/July-2023 • CWE-862: Missing Authorization •

CVSS: 6.4EPSS: 0%CPEs: 11EXPL: 0

In display, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07671046; Issue ID: ALPS07671046. • https://corp.mediatek.com/product-security-bulletin/July-2023 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CWE-787: Out-of-bounds Write •