CVE-2021-0904

In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06076938; Issue ID: ALPS06076938.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
OR cpe:2.3:h:mediatek:mt6771:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8183:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8385:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:43

Type Values Removed Values Added
References () https://corp.mediatek.com/product-security-bulletin/December-2021 - Third Party Advisory () https://corp.mediatek.com/product-security-bulletin/December-2021 - Third Party Advisory

Information

Published : 2021-12-15 19:15

Updated : 2024-11-21 05:43


NVD link : CVE-2021-0904

Mitre link : CVE-2021-0904

CVE.ORG link : CVE-2021-0904


JSON object : View

Products Affected

mediatek

  • mt6771
  • mt8183
  • mt8385
  • mt8788

google

  • android
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource