Описание
In sec boot, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service, if an attacker has physical access to the device, with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09963054; Issue ID: MSV-3899.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:mediatek:mt6813_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6813:-:*:*:*:*:*:*:*
EPSS
Процентиль: 9%
0.00191
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-787
CWE-190
Связанные уязвимости
CVSS3: 4.3
github
4 месяца назад
In sec boot, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service, if an attacker has physical access to the device, with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09963054; Issue ID: MSV-3899.
EPSS
Процентиль: 9%
0.00191
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-787
CWE-190