In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07168125; Issue ID: ALPS07168125.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Mediatek
Subscribe
|
Mt6735
Subscribe
Mt6739
Subscribe
Mt6761
Subscribe
Mt6763
Subscribe
Mt6765
Subscribe
Mt6768
Subscribe
Mt6771
Subscribe
Mt6779
Subscribe
Mt6781
Subscribe
Mt6785
Subscribe
Mt6833
Subscribe
Mt6853
Subscribe
Mt6855
Subscribe
Mt6873
Subscribe
Mt6877
Subscribe
Mt6879
Subscribe
Mt6885
Subscribe
Mt6893
Subscribe
Mt6895
Subscribe
Mt6983
Subscribe
Mt8163
Subscribe
Mt8167
Subscribe
Mt8167s
Subscribe
Mt8168
Subscribe
Mt8173
Subscribe
Mt8175
Subscribe
Mt8183
Subscribe
Mt8185
Subscribe
Mt8321
Subscribe
Mt8362a
Subscribe
Mt8365
Subscribe
Mt8385
Subscribe
Mt8666
Subscribe
Mt8667
Subscribe
Mt8675
Subscribe
Mt8735a
Subscribe
Mt8735b
Subscribe
Mt8765
Subscribe
Mt8766
Subscribe
Mt8768
Subscribe
Mt8786
Subscribe
Mt8788
Subscribe
Mt8789
Subscribe
Mt8797
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-31027 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07168125; Issue ID: ALPS07168125. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2024-08-03T05:03:32.680Z
Reserved: 2022-03-04T00:00:00
Link: CVE-2022-26468
No data.
Status : Modified
Published: 2022-09-06T18:15:12.577
Modified: 2024-11-21T06:54:00.417
Link: CVE-2022-26468
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD