MediaTek MT6991
cpe:2.3:h:mediatek:mt6991:*:*:*:*:*:*:*, +1 more
- >= MT6991, <= MT6993
- >= MT8678, <= MT8678
A vulnerability allowing local privilege escalation has been identified in the PCIe component of certain MediaTek chipsets. This issue arises from a possible out-of-bounds write caused by a missing bounds check, which could be exploited by an actor who has already gained system privileges. The vulnerability does not require user interaction for exploitation.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user with system privileges to gain elevated rights or access.
MediaTek has issued patches for this vulnerability, which can be applied by device OEMs. Instructions for accessing these patches are available through MediaTek's official channels.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.