MediaTek MT2735
cpe:2.3:h:mediatek:mt2735:*:*:*:*:*:*:*, +1 more
- >= MT2735, <= MT2735
A denial-of-service vulnerability has been identified in the modem component of various MediaTek chipsets, including MT2735, MT2737, MT6813, MT6815, MT6833, MT6835, MT6853, MT6855, MT6858, MT6873, MT6875, MT6877, MT6878, MT6879, MT6880, MT6883, MT6885, MT6886, MT6889, MT6890, MT6891, MT6893, MT6895, MT6896, MT6897, MT6899, MT6980, MT6983, MT6985, MT6986, MT6989, MT6990, MT6991, MT6993, MT8676, MT8791, MT8791T, MT8795T, MT8797, MT8798, MT8893. The vulnerability arises from a missing bounds check, which can lead to a system crash. Exploitation is possible if a user equipment (UE) connects to a rogue base station controlled by an attacker, without requiring any additional execution privileges or user interaction.
Exploitation of this vulnerability can cause a system crash, leading to a denial-of-service condition.
MediaTek has released patches for this vulnerability. Instructions for applying the patch can be obtained from the MediaTek contact person.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.