Vulnerability CVE-2022-21757


Published: 2022-06-06

Description:
In WIFI Firmware, there is a possible system crash due to a missing count check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06468894; Issue ID: ALPS06468894.

Type:

CWE-354

(Improper Validation of Integrity Check Value)

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:N/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.8/10
6.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
None
Complete

 References:
https://corp.mediatek.com/product-security-bulletin/June-2022

Copyright 2024, cxsecurity.com

 

Back to Top