Vulnerabilities > Mediatek

DATE CVE VULNERABILITY TITLE RISK
2022-07-06 CVE-2022-21744 Out-of-bounds Write vulnerability in Mediatek products
In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
mediatek CWE-787
critical
9.8
2022-01-24 CVE-2021-30636 Integer Overflow or Wraparound vulnerability in Mediatek Linkit Software Development KIT
In MediaTek LinkIt SDK before 4.6.1, there is a possible memory corruption due to an integer overflow during mishandled memory allocation by pvPortCalloc and pvPortRealloc.
network
low complexity
mediatek CWE-190
critical
9.8
2022-01-04 CVE-2021-40148 Cleartext Transmission of Sensitive Information vulnerability in Mediatek products
In Modem EMM, there is a possible information disclosure due to a missing data encryption.
network
low complexity
mediatek CWE-319
7.5
2022-01-04 CVE-2021-41789 Improper Input Validation vulnerability in Mediatek Mt7615 Firmware and Mt7622 Firmware
In wifi driver, there is a possible system crash due to a missing validation check.
low complexity
mediatek CWE-20
6.5
2021-12-26 CVE-2021-32467 Out-of-bounds Read vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-125
7.5
2021-12-26 CVE-2021-32468 Out-of-bounds Read vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-125
7.5
2021-12-26 CVE-2021-32469 Out-of-bounds Read vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-125
7.5
2021-12-26 CVE-2021-35055 Out-of-bounds Write vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-787
8.8
2021-12-26 CVE-2021-37560 Out-of-bounds Write vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-787
8.8
2021-12-26 CVE-2021-37561 Out-of-bounds Write vulnerability in Mediatek products
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol.
network
low complexity
mediatek CWE-787
8.8