In asf extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05489178; Issue ID: ALPS05561381.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/November-2021 | Vendor Advisory |
https://corp.mediatek.com/product-security-bulletin/November-2021 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:43
Type | Values Removed | Values Added |
---|---|---|
References | () https://corp.mediatek.com/product-security-bulletin/November-2021 - Vendor Advisory |
Information
Published : 2021-11-18 15:15
Updated : 2024-11-21 05:43
NVD link : CVE-2021-0620
Mitre link : CVE-2021-0620
CVE.ORG link : CVE-2021-0620
JSON object : View
Products Affected
mediatek
- mt8786
- mt8173
- mt8167
- mt9638
- mt5522
- mt6768
- mt6889
- mt9650
- mt8163
- mt8385
- mt9256
- mt8362a
- mt6785
- mt9286
- mt6735
- mt8185
- mt9970
- mt9631
- mt8365
- mt9629
- mt9686
- mt6853
- mt8175
- mt9636
- mt6833
- mt6753
- mt6763
- mt9288
- mt8195
- mt9981
- mt6739
- mt6885
- mt8168
- mt8797
- mt9669
- mt6877
- mt6750s
- mt8167s
- mt6757cd
- mt9675
- mt9980
- mt8789
- mt9632
- mt6580
- mt9285
- mt9688
- mt6757
- mt5599
- mt6853t
- mt6765
- mt8321
- mt6757c
- mt6761
- mt8791
- mt9685
- mt5597
- mt5527
- mt6757ch
- mt5598
- mt8788
- mt6737
- mt9652
- mt6762
- mt9950
- mt8183
- mt8766
- mt9670
- mt6755s
- mt8768
- mt9639
- mt6893
- mt9931
- mt6873
- mt6771
- mt6779
- mt8765
- android
CWE
CWE-125
Out-of-bounds Read