Vulnerabilities > Mediatek > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-32831 Use of Insufficiently Random Values vulnerability in Mediatek Software Development KIT
In wlan driver, there is a possible PIN crack due to use of insufficiently random values.
local
low complexity
mediatek CWE-330
5.5
2024-01-02 CVE-2023-32891 Out-of-bounds Write vulnerability in multiple products
In bluetooth service, there is a possible out of bounds write due to improper input validation.
local
low complexity
google mediatek CWE-787
6.7
2023-11-06 CVE-2023-32840 Out-of-bounds Write vulnerability in Mediatek products
In modem CCCI, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
mediatek CWE-787
6.5
2023-10-02 CVE-2023-32828 Integer Overflow or Wraparound vulnerability in multiple products
In vpu, there is a possible out of bounds write due to an integer overflow.
local
low complexity
mediatek google CWE-190
6.7
2023-10-02 CVE-2023-32829 Integer Overflow or Wraparound vulnerability in multiple products
In apusys, there is a possible out of bounds write due to an integer overflow.
local
low complexity
linuxfoundation mediatek google CWE-190
6.7
2023-09-04 CVE-2023-20835 Use After Free vulnerability in multiple products
In camsys, there is a possible use after free due to a race condition.
local
high complexity
linuxfoundation mediatek google CWE-416
6.4
2023-09-04 CVE-2023-20839 Out-of-bounds Read vulnerability in multiple products
In imgsys, there is a possible out of bounds read due to a missing valid range checking.
4.2
2023-09-04 CVE-2023-20840 Out-of-bounds Write vulnerability in multiple products
In imgsys, there is a possible out of bounds read and write due to a missing valid range checking.
6.5
2023-09-04 CVE-2023-20841 Out-of-bounds Write vulnerability in multiple products
In imgsys, there is a possible out of bounds write due to a missing valid range checking.
6.5
2023-09-04 CVE-2023-20842 Out-of-bounds Write vulnerability in multiple products
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking.
6.5