In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with User execution privileges needed. User interaction is not needed for exploitation.
Patch ID: WCNCR00480138; Issue ID: MSV-6295.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 18
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Mediatek Mt6890_Firmware
cpe:2.3:o:mediatek:mt6890_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt6890
cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7615_Firmware
cpe:2.3:o:mediatek:mt7615_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7615
cpe:2.3:h:mediatek:mt7615:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7915_Firmware
cpe:2.3:o:mediatek:mt7915_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7915
cpe:2.3:h:mediatek:mt7915:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7916_Firmware
cpe:2.3:o:mediatek:mt7916_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7916
cpe:2.3:h:mediatek:mt7916:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7981_Firmware
cpe:2.3:o:mediatek:mt7981_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7981
cpe:2.3:h:mediatek:mt7981:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7986_Firmware
cpe:2.3:o:mediatek:mt7986_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7986
cpe:2.3:h:mediatek:mt7986:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7990_Firmware
cpe:2.3:o:mediatek:mt7990_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7990
cpe:2.3:h:mediatek:mt7990:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7992_Firmware
cpe:2.3:o:mediatek:mt7992_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7992
cpe:2.3:h:mediatek:mt7992:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7993_Firmware
cpe:2.3:o:mediatek:mt7993_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7993
cpe:2.3:h:mediatek:mt7993:-:*:*:*:*:*:*:*
|
— | — |