
CVE-2021-0897
https://notcve.org/view.php?id=CVE-2021-0897
17 Dec 2021 — In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05670549. En apusys, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition CWE-787: Out-of-bounds Write •

CVE-2021-0896
https://notcve.org/view.php?id=CVE-2021-0896
17 Dec 2021 — In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05671206. En apusys, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-787: Out-of-bounds Write •

CVE-2021-0895
https://notcve.org/view.php?id=CVE-2021-0895
17 Dec 2021 — In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05672003. En apusys, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-787: Out-of-bounds Write •

CVE-2021-0894
https://notcve.org/view.php?id=CVE-2021-0894
17 Dec 2021 — In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05672038. En apusys, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-787: Out-of-bounds Write •

CVE-2021-0893
https://notcve.org/view.php?id=CVE-2021-0893
17 Dec 2021 — In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05687474. En apusys, se presenta una posible corrupción de memoria debido a un uso de memoria previamente liberada. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-416: Use After Free •

CVE-2021-0679
https://notcve.org/view.php?id=CVE-2021-0679
17 Dec 2021 — In apusys, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05687781. En apusys, se presenta una posible corrupción de memoria debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-787: Out-of-bounds Write •

CVE-2021-0678
https://notcve.org/view.php?id=CVE-2021-0678
17 Dec 2021 — In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672107; Issue ID: ALPS05722511. En apusys, se presenta una posible escritura fuera de límites debido a una falta de comprobación de límites. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-787: Out-of-bounds Write •

CVE-2021-0677
https://notcve.org/view.php?id=CVE-2021-0677
17 Dec 2021 — In ccu driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05827154; Issue ID: ALPS05827154. En el controlador ccu, se presenta una posible lectura fuera de límites debido a un desbordamiento de enteros. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-190: Integer Overflow or Wraparound •

CVE-2021-0676
https://notcve.org/view.php?id=CVE-2021-0676
17 Dec 2021 — In geniezone driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05863009; Issue ID: ALPS05863009. En el controlador geniezone, se presenta una posible lectura fuera de límites debido a una comprobación de límites incorrecta. • https://corp.mediatek.com/product-security-bulletin/December-2021 • CWE-125: Out-of-bounds Read •

CVE-2021-1038
https://notcve.org/view.php?id=CVE-2021-1038
15 Dec 2021 — In UserDetailsActivity of AndroidManifest.xml, there is a possible DoS due to a tapjacking/overlay attack. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-183411279 En la función UserDetailsActivity del archivo AndroidManifest.xml, se presenta un posible DoS debido a un ataque de tapjacking/overlay. Esto podría conllevar a una denegación de ... • https://source.android.com/security/bulletin/aaos/2021-12-01 • CWE-1021: Improper Restriction of Rendered UI Layers or Frames •