๐Ÿ” CVE Alert

CVE-2023-20677

MEDIUM 4.4
CVSS Score
4.4
EPSS Score
0.0%
EPSS Percentile
0th

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID: ALPS07588436.

Vendor mediatek, inc.
Product mt5221, mt6781, mt6789, mt6833, mt6855, mt6877, mt6879, mt6895, mt6983, mt7663, mt7668, mt7902, mt7921, mt8167s, mt8168, mt8169, mt8175, mt8185, mt8362a, mt8365, mt8385, mt8518, mt8532, mt8675, mt8695, mt8766, mt8768, mt8771, mt8781, mt8786, mt8788, mt8789, mt8791t, mt8797, mt8798
Published Apr 6, 2023
Last Updated Oct 23, 2024
Stay Ahead of the Next One

Get instant alerts for mediatek, inc. mt5221, mt6781, mt6789, mt6833, mt6855, mt6877, mt6879, mt6895, mt6983, mt7663, mt7668, mt7902, mt7921, mt8167s, mt8168, mt8169, mt8175, mt8185, mt8362a, mt8365, mt8385, mt8518, mt8532, mt8675, mt8695, mt8766, mt8768, mt8771, mt8781, mt8786, mt8788, mt8789, mt8791t, mt8797, mt8798

Be the first to know when new medium vulnerabilities affecting mediatek, inc. mt5221, mt6781, mt6789, mt6833, mt6855, mt6877, mt6879, mt6895, mt6983, mt7663, mt7668, mt7902, mt7921, mt8167s, mt8168, mt8169, mt8175, mt8185, mt8362a, mt8365, mt8385, mt8518, mt8532, mt8675, mt8695, mt8766, mt8768, mt8771, mt8781, mt8786, mt8788, mt8789, mt8791t, mt8797, mt8798 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

MediaTek, Inc. / MT5221, MT6781, MT6789, MT6833, MT6855, MT6877, MT6879, MT6895, MT6983, MT7663, MT7668, MT7902, MT7921, MT8167S, MT8168, MT8169, MT8175, MT8185, MT8362A, MT8365, MT8385, MT8518, MT8532, MT8675, MT8695, MT8766, MT8768, MT8771, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8797, MT8798
Android 11.0, 12.0, 13.0 / Yocto 3.1, 3.3, 4.0 / Linux-4.19 (for MT5221, MT7663, MT7668, MT7902 and MT7921 chipsets only)

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
corp.mediatek.com: https://corp.mediatek.com/product-security-bulletin/April-2023