MediaTek MT2737
cpe:2.3:h:mediatek:mt2737:*:*:*:*:*:*:*, +1 more
- <= 3.7
A vulnerability has been identified in the MediaTek WLAN STA driver, where an incorrect bounds check can lead to a possible out-of-bounds read. This issue could allow for remote (proximal/adjacent) information disclosure without requiring additional execution privileges. Exploitation of this vulnerability does not need user interaction. The affected chipsets include MT2737, MT6835, MT6878, MT6886, MT6897, MT6899, MT6985, MT6989, MT6990, MT6991, MT7902, MT7920, MT7921, MT7922, MT7923, MT7925, MT7927, MT7932, MT8196, MT8678, MT8796, and MT8893. The vulnerability is present in several software versions, including Android 13.0, 14.0, 15.0, SDK release 3.7 and prior, OpenWrt 21.02 and 23.05, and Yocto 4.0.
Exploitation of this vulnerability could lead to remote information disclosure.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.