MediaTek MT6739
cpe:2.3:h:mediatek:mt6739:*:*:*:*:*:*:*, +1 more
- >= 12.0, <= 15.0
A vulnerability allowing local escalation of privilege has been identified in MediaTek chipsets through a possible out-of-bounds write. This issue arises from a missing bounds check, which could be exploited if an attacker has physical access to the device. The vulnerability affects several chipsets, including MT6739, MT6761, MT6765, MT6768, MT6771, MT6779, MT6781, MT6785, MT6833, MT6853, MT6873, MT6877, MT6885, MT6893, MT8167, MT8167S, MT8175, MT8185, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8395, MT8666, MT8667, MT8673, MT8675, MT8678, MT8765, MT8766, MT8768, MT8771, MT8775, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8795T, MT8797, MT8798, MT8893. The affected software versions include Android 12.0, 13.0, 14.0, 15.0, as well as openWRT 19.07, 21.02, 23.05, and Yocto 4.0.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights or access on the device.
The vulnerability can be reproduced by accessing a device with the affected MediaTek chipsets and software versions. Physical access to the device is required, and the vulnerability can be exploited with user interaction.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.