CVE-2023-20630
https://notcve.org/view.php?id=CVE-2023-20630
In usb, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628505; Issue ID: ALPS07628505. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-787: Out-of-bounds Write •
CVE-2023-20610
https://notcve.org/view.php?id=CVE-2023-20610
In display drm, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363469; Issue ID: ALPS07363469. • https://corp.mediatek.com/product-security-bulletin/February-2023 • CWE-662: Improper Synchronization •
CVE-2023-20608
https://notcve.org/view.php?id=CVE-2023-20608
In display drm, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363599; Issue ID: ALPS07363599. • https://corp.mediatek.com/product-security-bulletin/February-2023 • CWE-416: Use After Free •
CVE-2023-20613
https://notcve.org/view.php?id=CVE-2023-20613
In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628614; Issue ID: ALPS07628614. • https://corp.mediatek.com/product-security-bulletin/February-2023 • CWE-20: Improper Input Validation •
CVE-2023-20604
https://notcve.org/view.php?id=CVE-2023-20604
In ged, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494067; Issue ID: ALPS07494067. • https://corp.mediatek.com/product-security-bulletin/February-2023 • CWE-787: Out-of-bounds Write •