Vulnerabilities > Realtek

DATE CVE VULNERABILITY TITLE RISK
2024-07-02 CVE-2022-25478 Unspecified vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 provides read and write access to the PCI configuration space of the device.
local
low complexity
realtek
7.8
2024-07-02 CVE-2022-25479 Memory Leak vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows for the leakage of kernel memory from both the stack and the heap.
local
low complexity
realtek CWE-401
5.5
2024-07-02 CVE-2022-25480 Out-of-bounds Write vulnerability in Realtek Rtsper and Rtsuer
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows writing to kernel memory beyond the SystemBuffer of the IRP.
local
low complexity
realtek CWE-787
7.8
2023-08-22 CVE-2020-26652 Unspecified vulnerability in Realtek Rtl8812Au Firmware 5.6.4.2
An issue was discovered in function nl80211_send_chandef in rtl8812au v5.6.4.2 allows attackers to cause a denial of service.
network
low complexity
realtek
7.5
2023-01-03 CVE-2022-40740 Unspecified vulnerability in Realtek Usdk and Xpon Software Development KIT
Realtek GPON router has insufficient filtering for special characters.
network
low complexity
realtek
7.2
2022-11-29 CVE-2022-32966 Missing Authorization vulnerability in Realtek Rtl8111Fp-Cg Firmware 3.0.0.2019090/5.0.10/5.0.23
RTL8168FP-CG Dash remote management function has missing authorization.
low complexity
realtek CWE-862
6.5
2022-11-29 CVE-2022-32967 Use of Hard-coded Credentials vulnerability in Realtek Rtl8111Ep-Cg Firmware and Rtl8111Fp-Cg Firmware
RTL8111EP-CG/RTL8111FP-CG DASH function has hard-coded password.
low complexity
realtek CWE-798
2.1
2022-09-27 CVE-2022-34326 Unspecified vulnerability in Realtek Rtl8195Am Firmware 2.0.10/2.0.6
In ambiot amb1_sdk (aka SDK for Ameba1) before 2022-06-20 on Realtek RTL8195AM devices before 284241d70308ff2519e40afd7b284ba892c730a3, the timer task and RX task would be locked when there are frequent and continuous Wi-Fi connection (with four-way handshake) failures in Soft AP mode.
network
low complexity
realtek
7.5
2022-08-30 CVE-2022-25635 Classic Buffer Overflow vulnerability in Realtek Bluetooth Mesh Software Development KIT
Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for broadcast network packet length.
low complexity
realtek CWE-120
6.5
2022-08-30 CVE-2022-26527 Classic Buffer Overflow vulnerability in Realtek Bluetooth Mesh Software Development KIT
Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for the size of segmented packets’ reference parameter.
low complexity
realtek CWE-120
6.5