Vulnerabilities > Realtek

DATE CVE VULNERABILITY TITLE RISK
2024-07-08 CVE-2023-34435 A firmware update vulnerability exists in the boa formUpload functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1
7.2
2024-07-08 CVE-2023-41251 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa formRoute functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-08 CVE-2023-45742 An integer overflow vulnerability exists in the boa updateConfigIntoFlash functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1
7.2
2024-07-08 CVE-2023-47677 A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1
8.8
2024-07-08 CVE-2023-50330 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa getInfo functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-08 CVE-2024-21778 Out-of-bounds Write vulnerability in multiple products
A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-02 CVE-2022-25477 Information Exposure Through Log Files vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 leaks driver logs that contain addresses of kernel mode objects, weakening KASLR.
local
low complexity
realtek CWE-532
5.5
2024-07-02 CVE-2022-25478 Unspecified vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 provides read and write access to the PCI configuration space of the device.
local
low complexity
realtek
7.8
2024-07-02 CVE-2022-25479 Memory Leak vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows for the leakage of kernel memory from both the stack and the heap.
local
low complexity
realtek CWE-401
5.5
2024-07-02 CVE-2022-25480 Out-of-bounds Write vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows writing to kernel memory beyond the SystemBuffer of the IRP.
local
low complexity
realtek CWE-787
7.8