SB2021102519 - Multiple vulnerabilities in MediaTek Chipsets
Published: October 25, 2021 Updated: March 7, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 21 secuirty vulnerabilities.
1) Out-of-bounds write (CVE-ID: CVE-2021-0661)
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.
2) Out-of-bounds write (CVE-ID: CVE-2021-0662)
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.
3) Out-of-bounds write (CVE-ID: CVE-2021-0663)
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input in audio DSP. A local administrator can trigger out-of-bounds write and execute arbitrary code on the target system with elevated privileges.
4) Memory corruption (CVE-ID: CVE-2021-0634)
The vulnerability allows a local privileged application to execute arbitrary code.
The vulnerability exists due to uninitialized data within display driver. A local privileged application can execute arbitrary code.
5) Out-of-bounds read (CVE-ID: CVE-2021-0616)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.
6) Out-of-bounds read (CVE-ID: CVE-2021-0615)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an integer overflow within flv extractor. A local application can gain access to sensitive information.
7) Out-of-bounds read (CVE-ID: CVE-2021-0614)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an incorrect bounds check within asf extractor. A local application can gain access to sensitive information.
8) Out-of-bounds read (CVE-ID: CVE-2021-0613)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an incorrect bounds check within asf extractor. A local application can gain access to sensitive information.
9) Out-of-bounds read (CVE-ID: CVE-2021-0414)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a heap buffer overflow within flv extractor. A local application can gain access to sensitive information.
10) Out-of-bounds read (CVE-ID: CVE-2021-0413)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a missing bounds check within flv extractor. A local application can gain access to sensitive information.
11) Out-of-bounds read (CVE-ID: CVE-2021-0412)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a missing bounds check within flv extractor. A local application can gain access to sensitive information.
12) Out-of-bounds read (CVE-ID: CVE-2021-0411)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an integer overflow within flv extractor. A local application can gain access to sensitive information.
13) Out-of-bounds read (CVE-ID: CVE-2021-0410)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an incorrect bounds check within flv extractor. A local application can gain access to sensitive information.
14) Out-of-bounds read (CVE-ID: CVE-2021-0409)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to an incorrect bounds check within flv extractor. A local application can gain access to sensitive information.
15) Heap-based Buffer Overflow (CVE-ID: CVE-2021-0633)
The vulnerability allows a local privileged application to execute arbitrary code.
The vulnerability exists due to an incorrect bounds check within display driver. A local privileged application can execute arbitrary code.
16) Information Exposure (CVE-ID: CVE-2021-0632)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a missing bounds check within wifi driver. A local application can gain access to sensitive information.
17) Buffer over-read (CVE-ID: CVE-2021-0631)
The vulnerability allows a local application to perform service disruption.
The vulnerability exists due to a missing bounds check within wifi driver. A local application can perform service disruption.
18) Integer overflow (CVE-ID: CVE-2021-0630)
The vulnerability allows a local application to perform service disruption.
The vulnerability exists due to a missing bounds check within wifi driver. A local application can perform service disruption.
19) Memory corruption (CVE-ID: CVE-2021-0625)
The vulnerability allows a local privileged application to execute arbitrary code.
The vulnerability exists due to improper locking within ccu. A local privileged application can execute arbitrary code.
20) Out-of-bounds read (CVE-ID: CVE-2021-0618)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.
21) Out-of-bounds read (CVE-ID: CVE-2021-0617)
The vulnerability allows a local application to gain access to sensitive information.
The vulnerability exists due to a heap buffer overflow within ape extractor. A local application can gain access to sensitive information.
Remediation
Install update from vendor's website.