
CVE-2022-20106
https://notcve.org/view.php?id=CVE-2022-20106
03 May 2022 — In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03330460; Issue ID: DTV03330460. En MM service, se presenta una posible escritura fuera de límites debido a un desbordamiento del búfer en la región heap de la memoria. • https://corp.mediatek.com/product-security-bulletin/May-2022 • CWE-787: Out-of-bounds Write •

CVE-2022-20105
https://notcve.org/view.php?id=CVE-2022-20105
03 May 2022 — In MM service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03330460; Issue ID: DTV03330460. En MM service, se presenta una posible escritura fuera de límites debido a un desbordamiento del búfer en la región stack de la memoria. • https://corp.mediatek.com/product-security-bulletin/May-2022 • CWE-787: Out-of-bounds Write •

CVE-2021-0669
https://notcve.org/view.php?id=CVE-2021-0669
18 Nov 2021 — In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05681550; Issue ID: ALPS05681550. En apusys, se presenta una posible corrupción de memoria debido a un uso de memoria previamente liberada. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-416: Use After Free •

CVE-2021-0668
https://notcve.org/view.php?id=CVE-2021-0668
18 Nov 2021 — In apusys, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05670521; Issue ID: ALPS05670521. En apusys, se presenta una posible corrupción de memoria debido a un manejo incorrecto de errores. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-755: Improper Handling of Exceptional Conditions •

CVE-2021-0667
https://notcve.org/view.php?id=CVE-2021-0667
18 Nov 2021 — In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05670581; Issue ID: ALPS05670581. En apusys, se presenta una posible corrupción de memoria debido a un uso de memoria previamente liberada. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-416: Use After Free •

CVE-2021-0666
https://notcve.org/view.php?id=CVE-2021-0666
18 Nov 2021 — In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672086; Issue ID: ALPS05672086. En apusys, se presenta una posible lectura fuera de límites debido a una comprobación de límites incorrecta. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-125: Out-of-bounds Read •

CVE-2021-0665
https://notcve.org/view.php?id=CVE-2021-0665
18 Nov 2021 — In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672113; Issue ID: ALPS05672113. En apusys, se presenta una posible lectura fuera de límites debido a una comprobación de límites incorrecta. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-125: Out-of-bounds Read •

CVE-2021-0629
https://notcve.org/view.php?id=CVE-2021-0629
18 Nov 2021 — In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05776625; Issue ID: ALPS05776625. En mdlactl driver, se presenta una posible corrupción de memoria debido a un uso de memoria previamente liberadaa. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-416: Use After Free •

CVE-2021-0623
https://notcve.org/view.php?id=CVE-2021-0623
18 Nov 2021 — In asf extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05489178; Issue ID: ALPS05585817. En asf extractor, se presenta una posible lectura fuera de límites debido a un desbordamiento de enteros. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-190: Integer Overflow or Wraparound •

CVE-2021-0622
https://notcve.org/view.php?id=CVE-2021-0622
18 Nov 2021 — In asf extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05489178; Issue ID: ALPS05561388. En asf extractor, se presenta una posible lectura fuera de límites debido a un desbordamiento del búfer de la pila. • https://corp.mediatek.com/product-security-bulletin/November-2021 • CWE-125: Out-of-bounds Read •