In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160820.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Mediatek
Subscribe
|
Mt6761
Subscribe
Mt6762
Subscribe
Mt6765
Subscribe
Mt6768
Subscribe
Mt6771
Subscribe
Mt6779
Subscribe
Mt6781
Subscribe
Mt6785
Subscribe
Mt6833
Subscribe
Mt6853
Subscribe
Mt6853t
Subscribe
Mt6873
Subscribe
Mt6877
Subscribe
Mt6885
Subscribe
Mt6893
Subscribe
Mt8183
Subscribe
Mt8185
Subscribe
Mt8321
Subscribe
Mt8385
Subscribe
Mt8666
Subscribe
Mt8667
Subscribe
Mt8675
Subscribe
Mt8735a
Subscribe
Mt8735b
Subscribe
Mt8765
Subscribe
Mt8766
Subscribe
Mt8768
Subscribe
Mt8786
Subscribe
Mt8788
Subscribe
Mt8789
Subscribe
Mt8791
Subscribe
Mt8797
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-25316 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160820. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2024-08-03T02:02:30.454Z
Reserved: 2021-10-12T00:00:00
Link: CVE-2022-20056
No data.
Status : Modified
Published: 2022-03-10T17:45:05.983
Modified: 2024-11-21T06:42:02.780
Link: CVE-2022-20056
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD