Impact
The flaw arises from a missing bounds check in the Hardware Flight Recorder Protocol (HFRP) of the MediaTek chipset. An out‑of‑bounds write can corrupt internal data structures, which, if leveraged by an attacker, may enable them to gain System‑level privileges. The weakness is a classic memory corruption bug classified as CWE‑787.
Affected Systems
The vulnerability affects MediaTek chipsets. No specific release or firmware version is listed in the Advisory, so all current versions may be susceptible. Users should verify the firmware version against MediaTek’s catalogue.
Risk and Exploitability
Exploitation requires a local presence with already elevated System privileges and does not need user interaction. The EPSS score is < 1% and the CVSS score is 6, indicating moderate severity. The flaw is not listed in the CISA KEV catalog, suggesting a limited exploitation window. Nonetheless, the potential to gain full system control warrants immediate attention.
OpenCVE Enrichment