CVE-2022-32659
https://notcve.org/view.php?id=CVE-2022-32659
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220705066; Issue ID: GN20220705066. • https://corp.mediatek.com/product-security-bulletin/January-2023 • CWE-755: Improper Handling of Exceptional Conditions •
CVE-2022-32665
https://notcve.org/view.php?id=CVE-2022-32665
In Boa, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20220026; Issue ID: OSBNB00144124. En Boa, existe una posible inyección de comando debido a una validación de entrada incorrecta. • https://corp.mediatek.com/product-security-bulletin/January-2023 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •
CVE-2022-32636
https://notcve.org/view.php?id=CVE-2022-32636
In keyinstall, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07510064; Issue ID: ALPS07510064. • https://corp.mediatek.com/product-security-bulletin/January-2023 • CWE-787: Out-of-bounds Write •
CVE-2022-32658
https://notcve.org/view.php?id=CVE-2022-32658
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220705059; Issue ID: GN20220705059. • https://corp.mediatek.com/product-security-bulletin/January-2023 • CWE-755: Improper Handling of Exceptional Conditions •
CVE-2022-32657
https://notcve.org/view.php?id=CVE-2022-32657
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220705042; Issue ID: GN20220705042. • https://corp.mediatek.com/product-security-bulletin/January-2023 • CWE-755: Improper Handling of Exceptional Conditions •