SB2023030640 - Multiple vulnerabilities in MediaTek chipsets 



SB2023030640 - Multiple vulnerabilities in MediaTek chipsets

Published: March 6, 2023

Security Bulletin ID SB2023030640
Severity
Low
Patch available
YES
Number of vulnerabilities 29
Exploitation vector Local access
Highest impact Code execution

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 29 secuirty vulnerabilities.


1) Improper Input Validation (CVE-ID: CVE-2023-20638)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


2) Improper Input Validation (CVE-ID: CVE-2023-20651)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within apu. A local privileged application can gain access to sensitive information.


3) Improper Input Validation (CVE-ID: CVE-2023-20650)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within apu. A local privileged application can execute arbitrary code.


4) Improper Input Validation (CVE-ID: CVE-2023-20649)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


5) Improper Input Validation (CVE-ID: CVE-2023-20648)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


6) Improper Input Validation (CVE-ID: CVE-2023-20647)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


7) Improper Input Validation (CVE-ID: CVE-2023-20646)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


8) Improper Input Validation (CVE-ID: CVE-2023-20645)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


9) Improper Input Validation (CVE-ID: CVE-2023-20644)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can gain access to sensitive information.


10) Improper Input Validation (CVE-ID: CVE-2023-20643)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


11) Improper Input Validation (CVE-ID: CVE-2023-20642)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


12) Improper Input Validation (CVE-ID: CVE-2023-20641)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


13) Improper Input Validation (CVE-ID: CVE-2023-20640)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


14) Improper Input Validation (CVE-ID: CVE-2023-20639)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


15) Improper Input Validation (CVE-ID: CVE-2023-20637)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within ril. A local privileged application can execute arbitrary code.


16) Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-ID: CVE-2023-20620)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a logic error within adsp. A local privileged application can execute arbitrary code.


17) Improper Input Validation (CVE-ID: CVE-2023-20636)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within display drm. A local privileged application can execute arbitrary code.


18) Integer underflow (CVE-ID: CVE-2023-20635)

The vulnerability allows a local privileged application to gain access to sensitive information.

The vulnerability exists due to an integer overflow within keyinstall. A local privileged application can gain access to sensitive information.


19) Improper Input Validation (CVE-ID: CVE-2023-20634)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to improper input validation within widevine. A local privileged application can execute arbitrary code.


20) Improper Validation of Array Index (CVE-ID: CVE-2023-20633)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within usb. A local privileged application can execute arbitrary code.


21) Out-of-bounds write (CVE-ID: CVE-2023-20632)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within usb. A local privileged application can execute arbitrary code.


22) Out-of-bounds write (CVE-ID: CVE-2023-20630)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within usb. A local privileged application can execute arbitrary code.


23) Improper Check or Handling of Exceptional Conditions (CVE-ID: CVE-2023-20628)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to an uncaught exception within thermal. A local privileged application can execute arbitrary code.


24) Incorrect Calculation of Buffer Size (CVE-ID: CVE-2023-20627)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within pqframework. A local privileged application can execute arbitrary code.


25) Improper Input Validation (CVE-ID: CVE-2023-20626)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to an incorrect bounds check within msdc. A local privileged application can execute arbitrary code.


26) Improper Synchronization (CVE-ID: CVE-2023-20625)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a race condition within adsp. A local privileged application can execute arbitrary code.


27) Buffer overflow (CVE-ID: CVE-2023-20624)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to an incorrect bounds check within vow. A local privileged application can execute arbitrary code.


28) Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-ID: CVE-2023-20623)

The vulnerability allows a local application to execute arbitrary code.

The vulnerability exists due to improper locking within ion. A local application can execute arbitrary code.


29) Improper Input Validation (CVE-ID: CVE-2023-20621)

The vulnerability allows a local privileged application to execute arbitrary code.

The vulnerability exists due to a missing bounds check within tinysys. A local privileged application can execute arbitrary code.


Remediation

Install update from vendor's website.