MediaTek MT9972
cpe:2.3:h:mediatek:mt9972:*:*:*:*:*:*:*
A vulnerability in the PlayReady Trusted Application (TA) component of MediaTek chipsets, specifically in the MT9972 chipset, has been identified. This vulnerability arises from a missing bounds check, which creates a potential out-of-bounds read condition. If exploited, it could lead to local escalation of privileges, but requires that the attacker has already obtained System privileges. The vulnerability is present in certain versions of the software running on Android 12.0 and 14.0.
Exploitation of this vulnerability could result in unauthorized privilege escalation, allowing a user to gain elevated rights or access within the system.
MediaTek has issued a patch for this vulnerability, which can be applied by device manufacturers. Instructions for applying the patch are available through MediaTek's official channels.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.