Impact
An out‑of‑bounds write in the display driver of MediaTek chipsets can overwrite memory when a bounds check is missing. The flaw allows a malicious actor who already has System privileges on the device to trigger the write, potentially gaining elevated privileges or modifying critical data. The vulnerability is a classic buffer overrun (CWE‑787) and can compromise confidentiality and integrity for all processes running on the affected system.
Affected Systems
The flaw affects MediaTek’s display driver software bundled with its chipsets. No specific firmware or driver versions are listed in the advisory; users should verify if their device’s firmware contains the earlier vulnerable release and apply any available updates. Vendors publish a patch ID (ALPS11004276) and an issue identifier (MSV‑7748).
Risk and Exploitability
The CVSS score of 6 reflects a medium‑severity vulnerability, and an EPSS score of less than 1% indicates a low likelihood of exploitation. The flaw is not listed in the CISA KEV catalog. The missing bounds check requires the attacker to already possess System privilege, implying a local privilege‑escalation scenario rather than remote exploitation. If an attacker can run code with system rights—by exploiting a separate local vulnerability or through an already compromised application—they can trigger the out‑of‑bounds write to gain further privileges. The lack of user interaction reduces the attack surface but still poses a significant risk to device integrity.
OpenCVE Enrichment