cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2025-20643,https://securityvulnerability.io/vulnerability/CVE-2025-20643,Out of Bounds Read Vulnerability in MediaTek Devices,"A potential out of bounds read vulnerability exists in certain MediaTek devices due to an insufficient bounds check. If exploited, this vulnerability could allow a malicious actor with physical access to the device to disclose sensitive information, especially if they have already gained System privileges. User interaction is required for the successful exploitation of this issue. For further details and mitigation steps, refer to the security bulletin issued by MediaTek.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",3.9,LOW,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-02-03T03:24:08.097Z,0 CVE-2025-20642,https://securityvulnerability.io/vulnerability/CVE-2025-20642,Out of Bounds Write Vulnerability in MediaTek Device,"An out of bounds write vulnerability has been identified in MediaTek devices, stemming from a missing bounds check. This flaw allows an attacker with physical access to potentially escalate privileges locally, posing a risk to device security. It's important to note that user interaction is required for the exploitation of this vulnerability. MediaTek has issued a patch to address this issue, ensuring users can secure their devices against potential threats. Detailed mitigation steps can be found in the security bulletin.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",6.6,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-02-03T03:24:06.483Z,0 CVE-2025-20641,https://securityvulnerability.io/vulnerability/CVE-2025-20641,Out of Bounds Write Vulnerability in Mediatek Devices,"In certain Mediatek devices, a possible out of bounds write vulnerability has been identified due to a missing bounds check. This issue allows for potential local escalation of privilege if an attacker has physical access, without requiring any additional execution privileges. User interaction is necessary for successful exploitation, making it critical for users to apply patches to ensure their device security. For further details and remediation, consult the official Mediatek product security bulletin.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",6.6,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-02-03T03:24:04.876Z,0 CVE-2025-20640,https://securityvulnerability.io/vulnerability/CVE-2025-20640,Out of Bounds Read Vulnerability in MediaTek Devices,"An out of bounds read vulnerability exists in MediaTek devices due to a missing bounds check, which can lead to potential local information disclosure. Exploitation of this vulnerability requires physical access to the device and user interaction. Addressing this issue is critical to protecting sensitive data from unauthorized access, and a patch has been released to remediate the flaw.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",4.3,MEDIUM,0.00044999999227002263,false,,false,false,false,,false,false,false,,2025-02-03T03:24:03.332Z,0 CVE-2025-20639,https://securityvulnerability.io/vulnerability/CVE-2025-20639,Out of Bounds Write Vulnerability in MediaTek Devices,"A vulnerability in MediaTek's DA software allows for a potential out of bounds write due to insufficient bounds checking. This issue poses a risk of local privilege escalation, requiring an attacker to have physical access to the device for exploitation. User interaction facilitates this attack. To address this issue, MediaTek has issued a patch identified as ALPS09291146, associated with Issue ID MSV-2060.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",6.6,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-02-03T03:24:01.156Z,0 CVE-2025-20638,https://securityvulnerability.io/vulnerability/CVE-2025-20638,Local Information Disclosure Vulnerability in MediaTek Devices,"A potential local information disclosure vulnerability has been identified in DA by MediaTek, stemming from uninitialized heap data. This flaw allows an attacker with physical access to the device to read sensitive uninitialized data, which could lead to unauthorized access to potentially sensitive information. Notably, user interaction is required to exploit this vulnerability. The issue has been documented with Patch ID: ALPS09291449 and Issue ID: MSV-2066.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",4.3,MEDIUM,0.00044999999227002263,false,,false,false,false,,false,false,false,,2025-02-03T03:23:59.474Z,0 CVE-2024-20142,https://securityvulnerability.io/vulnerability/CVE-2024-20142,Out of Bounds Write Vulnerability in V5 DA by MediaTek,"The V5 DA by MediaTek has a vulnerability characterized by an out of bounds write due to a missing bounds check. This flaw presents a risk for local escalation of privileges, provided the attacker has physical access to the device. Exploitation of this vulnerability requires user interaction, making it particularly insidious as it can be leveraged by malicious individuals with direct access. A patch has been released under ID ALPS09291406 to address this security issue, so it is critical for users to update their devices promptly.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",6.6,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-02-03T03:23:57.752Z,0 CVE-2024-20141,https://securityvulnerability.io/vulnerability/CVE-2024-20141,Out of Bounds Write Vulnerability in V5 DA Affected by MediaTek,"In V5 DA, a vulnerability exists that allows for potential out of bounds writing. This flaw arises from inadequate bounds checking, which presents a risk of local escalation of privilege if an attacker has physical access to the device. Exploitation requires user interaction and does not necessitate any additional execution privileges. It is crucial for users to remain vigilant and apply available patches, such as Patch ID ALPS09291402, to mitigate this security issue.",MediaTek,"Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6781, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8167s, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8678, Mt8765, Mt8766, Mt8768, Mt8771, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8893",6.6,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-02-03T03:23:56.024Z,0 CVE-2024-20033,https://securityvulnerability.io/vulnerability/CVE-2024-20033,Possible Information Disclosure in NVRAM Due to Missing Bounds Check,"In nvram, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08499945; Issue ID: ALPS08499945.",MediaTek,"Mt2713, Mt6739, Mt6761, Mt6765, Mt6768, Mt6771, Mt6779, Mt6785, Mt6789, Mt6835, Mt6855, Mt6879, Mt6883, Mt6885, Mt6886, Mt6893, Mt6895, Mt6983, Mt6985, Mt8167, Mt8167s, Mt8168, Mt8173, Mt8175, Mt8185, Mt8188, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8370, Mt8385, Mt8390, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8676, Mt8678, Mt8755, Mt8765, Mt8766, Mt8768, Mt8775, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8792, Mt8796, Mt8797, Mt8798",,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-04T02:43:48.493Z,0 CVE-2024-20025,https://securityvulnerability.io/vulnerability/CVE-2024-20025,Out of Bounds Write Vulnerability in MediaTek Products,"A potential out of bounds write issue has been identified in MediaTek software due to an integer overflow. This vulnerability could allow local escalation of privileges, enabling an attacker to execute system-level commands without user interaction. It is crucial for users of affected MediaTek devices to apply the necessary patches to mitigate this risk.",MediaTek,"Mt6739, Mt6757, Mt6761, Mt6763, Mt6765, Mt6768, Mt6771, Mt6779, Mt6785, Mt6833, Mt6853, Mt6873, Mt6877, Mt6885, Mt6893, Mt8167, Mt8168, Mt8173, Mt8175, Mt8185, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8673, Mt8678, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8796, Mt8797, Mt8798",,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-04T02:43:35.600Z,0 CVE-2023-32883,https://securityvulnerability.io/vulnerability/CVE-2023-32883,Out of Bounds Write Vulnerability in MediaTek Engineer Mode,"In MediaTek's Engineer Mode, an out of bounds write vulnerability has been identified due to a missing bounds check. This flaw allows for local escalation of privileges, potentially granting malicious entities access to system execution privileges. Importantly, this vulnerability does not require user interaction for exploitation, making it a significant security concern. MediaTek has released a patch identified as ALPS08282249 to address this issue. It is crucial for users of affected MediaTek products to apply the latest updates to mitigate potential risks associated with this vulnerability.",MediaTek,"MT2713, MT6580, MT6739, MT6761, MT6762, MT6765, MT6768, MT6769, MT6779, MT6781, MT6785, MT6789, MT6833, MT6835, MT6853, MT6853T, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6886, MT6889, MT6891, MT6893, MT6895, MT6983, MT6985, MT8167, MT8167S, MT8168, MT8173, MT8175, MT8188, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8390, MT8395, MT8666, MT8667, MT8673, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8797, MT8798",6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2024-01-02T03:15:00.000Z,0 CVE-2023-32884,https://securityvulnerability.io/vulnerability/CVE-2023-32884,Information Disclosure Vulnerability in MediaTek NetDagent,"A vulnerability exists in MediaTek's NetDagent due to improper bounds checking, leading to possible information disclosure. This issue may allow an attacker to escalate privileges locally with System execution rights. Exploitation of this vulnerability does not require user interaction, thus posing a significant threat to system integrity and user data. Affected versions have been patched under Patch ID ALPS07944011 to address this security concern.",MediaTek,"MT2713, MT6580, MT6739, MT6761, MT6765, MT6768, MT6779, MT6781, MT6785, MT6789, MT6833, MT6835, MT6853, MT6855, MT6873, MT6877, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6983, MT6985, MT8167, MT8167S, MT8168, MT8173, MT8175, MT8188, MT8192, MT8195, MT8195Z, MT8321, MT8362A, MT8365, MT8385, MT8395, MT8666, MT8667, MT8673, MT8696, MT8755, MT8765, MT8766, MT8768, MT8771, MT8775, MT8781, MT8786, MT8788, MT8789, MT8791, MT8791T, MT8795T, MT8797, MT8798, MT8871",6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2024-01-02T03:15:00.000Z,0 CVE-2023-20790,https://securityvulnerability.io/vulnerability/CVE-2023-20790,Out of Bounds Write Vulnerability in NVRAM by MediaTek,"A potential out of bounds write vulnerability exists in the NVRAM component of MediaTek products. This flaw arises from a missing bounds check, which can lead to local information disclosure, necessitating system execution privileges for exploitation. Notably, user interaction is not required for the attack, allowing it to be executed without prior consent from the user. A patch has been issued to address this vulnerability, emphasizing the importance of maintaining updated software to safeguard against potential exploits.",MediaTek,"Mt2713, Mt2735, Mt2737, Mt6739, Mt6761, Mt6762, Mt6763, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6785, Mt6789, Mt6833, Mt6835, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6886, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6980, Mt6983, Mt6985, Mt6990, Mt8167, Mt8167s, Mt8168, Mt8173, Mt8175, Mt8185, Mt8188, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",4.4,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-08-07T04:15:00.000Z,0 CVE-2023-20692,https://securityvulnerability.io/vulnerability/CVE-2023-20692,Denial of Service Vulnerability in Mediatek WLAN Firmware,"A vulnerability exists in Mediatek's WLAN firmware that may cause a system crash due to an uncaught exception. This flaw allows for a potential remote denial of service attack without requiring additional execution privileges or user interaction, thus posing a significant risk to devices using the affected firmware. Timely patching is advised to mitigate this risk.",MediaTek,"Mt6739, Mt8167, Mt8168, Mt8321, Mt8365, Mt8385, Mt8666, Mt8765, Mt8788",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20689,https://securityvulnerability.io/vulnerability/CVE-2023-20689,Integer Overflow Vulnerability in Mediatek WLAN Firmware,"The wlan firmware from Mediatek is susceptible to an integer overflow vulnerability, which can potentially cause a system crash. This flaw enables a remote denial of service without the need for user interaction or elevated execution privileges, posing a significant risk to network stability. Affected users should apply the patch identified as ALPS07664741 to mitigate this issue.",MediaTek,"Mt6739, Mt8167, Mt8321, Mt8365, Mt8385, Mt8666, Mt8765, Mt8788",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20690,https://securityvulnerability.io/vulnerability/CVE-2023-20690,Integer Overflow Vulnerability in MediaTek WLAN Firmware,"A vulnerability has been identified in the WLAN firmware provided by MediaTek, which occurs due to an integer overflow. This flaw may allow an attacker to exploit the system remotely, resulting in a denial of service without requiring any user interaction or special execution privileges. Affected users should update to the patched version identified by Patch ID ALPS07664735 to mitigate the risk.",MediaTek,"Mt6739, Mt8167, Mt8168, Mt8321, Mt8365, Mt8385, Mt8666, Mt8765, Mt8788",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20766,https://securityvulnerability.io/vulnerability/CVE-2023-20766,Out of Bounds Write Vulnerability in MediaTek GPS,"A potential vulnerability exists in MediaTek's GPS component due to insufficient bounds checking, allowing for out of bounds write conditions. This vulnerability could be exploited to escalate privileges locally to system execution levels without requiring user interaction. It is crucial for users of affected devices to apply the provided patches to mitigate this risk.",MediaTek,"Mt6580, Mt6735, Mt6739, Mt6753, Mt6757, Mt6761, Mt6762, Mt6763, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6785, Mt6789, Mt6833, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6886, Mt6891, Mt6893, Mt6895, Mt6983, Mt6985, Mt8167, Mt8168, Mt8173, Mt8175, Mt8185, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8666, Mt8667, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20691,https://securityvulnerability.io/vulnerability/CVE-2023-20691,Integer Overflow Vulnerability in MediaTek WLAN Firmware,"An integer overflow vulnerability exists in MediaTek WLAN firmware, which may result in a system crash. This vulnerability allows for a remote denial of service, requiring no special execution privileges or user interaction, making it particularly concerning for users relying on efficient and stable wireless communication.",MediaTek,"Mt6739, Mt8167, Mt8321, Mt8365, Mt8385, Mt8666, Mt8765, Mt8788",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20693,https://securityvulnerability.io/vulnerability/CVE-2023-20693,Remote Denial of Service Vulnerability in MediaTek WLAN Firmware,"A vulnerability exists in MediaTek's WLAN firmware that may cause a system crash due to an uncaught exception, leading to a potential remote denial of service. This issue can be exploited without requiring any user interaction, making it a significant concern for affected users. Affected systems might experience downtime or instability, impacting network operations significantly. Users are advised to apply the available patches to mitigate this vulnerability.",MediaTek,"Mt6739, Mt6895, Mt6983, Mt8167, Mt8168, Mt8195, Mt8321, Mt8365, Mt8385, Mt8666, Mt8765, Mt8781, Mt8788",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-07-04T02:15:00.000Z,0 CVE-2023-20694,https://securityvulnerability.io/vulnerability/CVE-2023-20694,Out of Bounds Write Vulnerability in Preloader for MediaTek Products,"A security flaw in the Preloader of MediaTek devices can allow for an out of bounds write due to insufficient bounds checking. This vulnerability could potentially enable local escalation of privileges, granting unauthorized access to system-level execution. Notably, this issue does not require user interaction for exploitation, making it particularly concerning. MediaTek has released patches under IDs ALPS07733998 and ALPS07874388 specifically for the vulnerable MT6880 and MT6890 models, highlighting the importance of updating affected devices to mitigate security risks.",MediaTek,"Mt6580, Mt6739, Mt6761, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6785, Mt6789, Mt6853, Mt6855, Mt6873, Mt6879, Mt6880, Mt6885, Mt6890, Mt6895, Mt6983, Mt8167, Mt8175, Mt8185, Mt8195, Mt8321, Mt8365, Mt8385, Mt8395, Mt8666, Mt8667, Mt8673, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-05-15T00:00:00.000Z,0 CVE-2023-20726,https://securityvulnerability.io/vulnerability/CVE-2023-20726,Location Disclosure Vulnerability in mnld from MediaTek,"A security flaw in the mnld component of MediaTek products allows for potential leaks of GPS location data. This vulnerability arises from a lack of necessary permission checks, making it possible for unauthorized access to sensitive location information without any execution privileges or user interaction. The issue specifically affects several MediaTek chipsets, underscoring the need for users and developers to ensure timely updates and patches. MediaTek has addressed this vulnerability with specific patch IDs ensuring the protection of affected MT6880, MT6890, MT6980, MT6980D, and MT6990 devices.",MediaTek,"Mt2731, Mt2735, Mt2737, Mt6580, Mt6739, Mt6761, Mt6762, Mt6765, Mt6767, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6783, Mt6785, Mt6789, Mt6833, Mt6853, Mt6855, Mt6873, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6886, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6896, Mt6980, Mt6980d, Mt6983, Mt6985, Mt6990, Mt8167, Mt8168, Mt8173, Mt8185, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8666, Mt8673, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",3.3,LOW,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-05-15T00:00:00.000Z,0 CVE-2023-20655,https://securityvulnerability.io/vulnerability/CVE-2023-20655,Privilege Escalation Vulnerability in MediaTek mmsdk Product,"A vulnerability exists in the MediaTek mmsdk due to a parcel format mismatch, which might allow local code execution without requiring additional execution privileges or user interaction. This flaw can be exploited by attackers to gain unauthorized access to system resources, posing a significant security risk. Users of affected versions are advised to apply the recommended patches promptly to safeguard their systems.",MediaTek,"MT2715, MT6580, MT6735, MT6737, MT6739, MT6753, MT6761, MT6765, MT6768, MT6771, MT6779, MT6781, MT6785, MT6789, MT6833, MT6853, MT6853T, MT6855, MT6873, MT6877, MT6879, MT6883, MT6885, MT6889, MT6893, MT6895, MT6983, MT8167, MT8167S, MT8168, MT8173, MT8175, MT8185, MT8192, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8395, MT8666, MT8667, MT8673, MT8675, MT8765, MT8766, MT8768, MT8771, MT8781, MT8786, MT8788, MT8789, MT8791, MT8791T, MT8795T, MT8797, MT8798, MT8871, MT8891",7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-04-06T00:00:00.000Z,0 CVE-2023-20688,https://securityvulnerability.io/vulnerability/CVE-2023-20688,Out of Bounds Read Vulnerability in MediaTek Products,"This vulnerability involves a possible out of bounds read due to a missing bounds check in certain MediaTek products. If exploited, it may allow local information disclosure while requiring system execution privileges. Notably, user interaction is not necessary for this exploitation to occur. Affected products should be patched as per Patch ID: ALPS07441821 to mitigate potential risks.",MediaTek,"Mt2715, Mt6580, Mt6731, Mt6735, Mt6737, Mt6739, Mt6753, Mt6757, Mt6757c, Mt6757cd, Mt6757ch, Mt6761, Mt6762, Mt6763, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6785, Mt6789, Mt6833, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6883, Mt6885, Mt6889, Mt6891, Mt6893, Mt6895, Mt6983, Mt8167, Mt8168, Mt8169, Mt8173, Mt8175, Mt8183, Mt8185, Mt8188, Mt8192, Mt8195, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8390, Mt8395, Mt8666, Mt8673, Mt8675, Mt8696, Mt8765, Mt8766, Mt8768, Mt8771, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8795t, Mt8797, Mt8798, Mt8891",4.4,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-04-06T00:00:00.000Z,0 CVE-2022-32635,https://securityvulnerability.io/vulnerability/CVE-2022-32635,Out of Bounds Write Vulnerability in MediaTek GPS Services,"A vulnerability exists in MediaTek's GPS services which allows for a possible out of bounds write due to a missing bounds check. This flaw could enable local escalation of privilege without the need for additional execution privileges, and does not require user interaction to exploit. Users and administrators are encouraged to apply the available patches to mitigate this issue.",MediaTek,"Mt6580, Mt6735, Mt6739, Mt6753, Mt6757, Mt6761, Mt6762, Mt6763, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6785, Mt6789, Mt6833, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6891, Mt6893, Mt6895, Mt6983, Mt8167, Mt8168, Mt8173, Mt8185, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8666, Mt8667, Mt8675, Mt8765, Mt8766, Mt8768, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-01-03T00:00:00.000Z,0 CVE-2022-32640,https://securityvulnerability.io/vulnerability/CVE-2022-32640,Out of Bounds Write Vulnerability in MediaTek Wi-Fi Products,"An out of bounds write vulnerability exists in MediaTek's Meta Wi-Fi products due to the lack of a proper bounds check. This flaw allows attackers to potentially escalate local privileges to execute system-level commands, making it a serious concern for users. The exploitation of this vulnerability does not require user interaction, thus increasing its risk profile. Affected parties are encouraged to apply the security patch provided in ALPS07441652 to secure their systems.",MediaTek,"Mt6580, Mt6731, Mt6735, Mt6737, Mt6739, Mt6753, Mt6757, Mt6757c, Mt6757cd, Mt6757ch, Mt6761, Mt6762, Mt6763, Mt6765, Mt6768, Mt6769, Mt6771, Mt6779, Mt6781, Mt6785, Mt6789, Mt6833, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6883, Mt6885, Mt6889, Mt6891, Mt6893, Mt6895, Mt6983, Mt8167, Mt8168, Mt8173, Mt8185, Mt8321, Mt8362a, Mt8365, Mt8385, Mt8666, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797",6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-01-03T00:00:00.000Z,0