In wlan STA driver, there is a possible system crash due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.
Patch ID: WCNCR00480851; Issue ID: MSV-6338.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 12
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Mediatek Mt7902_Firmware
cpe:2.3:o:mediatek:mt7902_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7902
cpe:2.3:h:mediatek:mt7902:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7920_Firmware
cpe:2.3:o:mediatek:mt7920_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7920
cpe:2.3:h:mediatek:mt7920:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7921_Firmware
cpe:2.3:o:mediatek:mt7921_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7921
cpe:2.3:h:mediatek:mt7921:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7922_Firmware
cpe:2.3:o:mediatek:mt7922_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7922
cpe:2.3:h:mediatek:mt7922:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7925_Firmware
cpe:2.3:o:mediatek:mt7925_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7925
cpe:2.3:h:mediatek:mt7925:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7927_Firmware
cpe:2.3:o:mediatek:mt7927_firmware:-:*:*:*:*:*:*:*
|
— | — |
|
Mediatek Mt7927
cpe:2.3:h:mediatek:mt7927:-:*:*:*:*:*:*:*
|
— | — |