SB2021102519 - Multiple vulnerabilities in MediaTek Chipsets



SB2021102519 - Multiple vulnerabilities in MediaTek Chipsets

Published: October 25, 2021 Updated: March 7, 2023

Security Bulletin ID SB2021102519
Severity
Low
Patch available
YES
Number of vulnerabilities 21
Exploitation vector Local access
Highest impact Code execution

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 21 secuirty vulnerabilities.


1) Out-of-bounds write (CVE-ID: CVE-2021-0661)

The vulnerability allows a local user to compromise vulnerable system.

The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.


2) Out-of-bounds write (CVE-ID: CVE-2021-0662)

The vulnerability allows a local user to compromise vulnerable system.

The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.


3) Out-of-bounds write (CVE-ID: CVE-2021-0663)

The vulnerability allows a local user to compromise vulnerable system.

The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.


4) Memory corruption (CVE-ID: CVE-2021-0634)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to uninitialized data within display driver. A local privileged application can execute arbitrary code.


5) Out-of-bounds read (CVE-ID: CVE-2021-0616)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.


6) Out-of-bounds read (CVE-ID: CVE-2021-0615)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an integer overflow within flv extractor. A local application can gain access to sensitive information.


7) Out-of-bounds read (CVE-ID: CVE-2021-0614)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an incorrect bounds check within asf extractor. A local application can gain access to sensitive information.


8) Out-of-bounds read (CVE-ID: CVE-2021-0613)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an incorrect bounds check within asf extractor. A local application can gain access to sensitive information.


9) Out-of-bounds read (CVE-ID: CVE-2021-0414)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a heap buffer overflow within flv extractor. A local application can gain access to sensitive information.


10) Out-of-bounds read (CVE-ID: CVE-2021-0413)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within flv extractor. A local application can gain access to sensitive information.


11) Out-of-bounds read (CVE-ID: CVE-2021-0412)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within flv extractor. A local application can gain access to sensitive information.


12) Out-of-bounds read (CVE-ID: CVE-2021-0411)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an integer overflow within flv extractor. A local application can gain access to sensitive information.


13) Out-of-bounds read (CVE-ID: CVE-2021-0410)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an incorrect bounds check within flv extractor. A local application can gain access to sensitive information.


14) Out-of-bounds read (CVE-ID: CVE-2021-0409)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to an incorrect bounds check within flv extractor. A local application can gain access to sensitive information.


15) Heap-based Buffer Overflow (CVE-ID: CVE-2021-0633)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to an incorrect bounds check within display driver. A local privileged application can execute arbitrary code.


16) Information Exposure (CVE-ID: CVE-2021-0632)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within wifi driver. A local application can gain access to sensitive information.


17) Buffer over-read (CVE-ID: CVE-2021-0631)

The vulnerability allows a local application to perform service disruption.

The vulnerability exists due to a missing bounds check within wifi driver. A local application can perform service disruption.


18) Integer overflow (CVE-ID: CVE-2021-0630)

The vulnerability allows a local application to perform service disruption.

The vulnerability exists due to a missing bounds check within wifi driver. A local application can perform service disruption.


19) Memory corruption (CVE-ID: CVE-2021-0625)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to improper locking within ccu. A local privileged application can execute arbitrary code.


20) Out-of-bounds read (CVE-ID: CVE-2021-0618)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.


21) Out-of-bounds read (CVE-ID: CVE-2021-0617)

The vulnerability allows a local application to gain access to sensitive information.

The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.


Remediation

Install update from vendor's website.