Page 86 of 2341 results (0.010 seconds)

CVSS: 5.5EPSS: 0%CPEs: 15EXPL: 0

07 Mar 2023 — In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. • https://www.unisoc.com/en_us/secy/announcementDetail/1632612109718192129 • CWE-862: Missing Authorization •

CVSS: 6.7EPSS: 0%CPEs: 15EXPL: 0

07 Mar 2023 — In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system execution privileges needed. • https://www.unisoc.com/en_us/secy/announcementDetail/1632612109718192129 • CWE-862: Missing Authorization •

CVSS: 5.5EPSS: 0%CPEs: 15EXPL: 0

07 Mar 2023 — In gpu device, there is a memory corruption due to a use after free. This could lead to local denial of service in kernel. • https://www.unisoc.com/en_us/secy/announcementDetail/1632612109718192129 • CWE-416: Use After Free •

CVSS: 6.7EPSS: 0%CPEs: 27EXPL: 0

07 Mar 2023 — In usb, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628505; Issue ID: ALPS07628505. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-787: Out-of-bounds Write •

CVSS: 4.4EPSS: 0%CPEs: 55EXPL: 0

07 Mar 2023 — In keyinstall, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07563028; Issue ID: ALPS07563028. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-191: Integer Underflow (Wrap or Wraparound) •

CVSS: 6.7EPSS: 0%CPEs: 27EXPL: 0

07 Mar 2023 — In usb, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628508; Issue ID: ALPS07628508. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-129: Improper Validation of Array Index •

CVSS: 6.7EPSS: 0%CPEs: 28EXPL: 0

07 Mar 2023 — In widevine, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07635697; Issue ID: ALPS07635697. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-20: Improper Input Validation •

CVSS: 6.4EPSS: 0%CPEs: 76EXPL: 0

07 Mar 2023 — In ion, there is a possible escalation of privilege due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07559778; Issue ID: ALPS07559778. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition •

CVSS: 6.7EPSS: 0%CPEs: 27EXPL: 0

07 Mar 2023 — In usb, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628506; Issue ID: ALPS07628506. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-787: Out-of-bounds Write •

CVSS: 6.7EPSS: 0%CPEs: 29EXPL: 0

07 Mar 2023 — In msdc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07405223; Issue ID: ALPS07405223. • https://corp.mediatek.com/product-security-bulletin/March-2023 • CWE-20: Improper Input Validation •