Author: Angelo Barbosa

CVE-2023-32848 | MediaTek MT6885 vdec out-of-bounds write (ALPS08163896)

A vulnerability, which was classified as critical, was found in MediaTek MT6761, MT6763, MT6765, MT6768, MT6771, MT6779, MT6785, MT6853, MT6873 and MT6885. Affected is an unknown function of the component vdec. The manipulation leads to out-of-bounds write. This vulnerability is traded as CVE-2023-32848. An attack has to be approached locally. There is no exploit available. It is recommended to apply a patch to fix this...

Read More

CVE-2023-32847 | MediaTek MT8798 Audio out-of-bounds write (ALPS08241940)

A vulnerability, which was classified as critical, has been found in MediaTek MT2713, MT6580, MT6739, MT6761, MT6762, MT6765, MT6779, MT6785, MT6789, MT6833, MT6835, MT6853, MT6853T, MT6855, MT6873, MT6877, MT6879, MT6883, MT6885, MT6886, MT6889, MT6895, MT6983, MT6985, MT8167, MT8167S, MT8168, MT8175, MT8188, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8390, MT8395, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8797 and MT8798. This issue affects some unknown processing of the component Audio. The manipulation leads to out-of-bounds write. The identification of this vulnerability is CVE-2023-32847. The attack needs to be approached locally. There is no exploit available. It is recommended to apply a patch to fix this...

Read More

CVE-2023-32858 | MediaTek MT8788 GZ information disclosure (ALPS07806008)

A vulnerability classified as problematic was found in MediaTek MT6761, MT6765, MT6771, MT6835, MT6886, MT6983, MT6985, MT8766, MT8768 and MT8788. This vulnerability affects unknown code of the component GZ. The manipulation leads to information disclosure. This vulnerability was named CVE-2023-32858. It is possible to launch the attack on the local host. There is no exploit available. It is recommended to apply a patch to fix this...

Read More

CVE-2023-32857 | MediaTek MT8798 Display information disclosure (ALPS07993705)

A vulnerability classified as problematic has been found in MediaTek MT6765, MT6768, MT6833, MT6879, MT6883, MT6885, MT6889, MT6893, MT6983, MT6985, MT8188, MT8195, MT8797 and MT8798. This affects an unknown part of the component Display. The manipulation leads to information disclosure. This vulnerability is uniquely identified as CVE-2023-32857. Attacking locally is a requirement. There is no exploit available. It is recommended to apply a patch to fix this...

Read More

CVE-2023-32856 | MediaTek MT8798 Display information disclosure (ALPS07993705)

A vulnerability was found in MediaTek MT6765, MT6768, MT6833, MT6879, MT6883, MT6885, MT6889, MT6893, MT6983, MT6985, MT8188, MT8195, MT8797 and MT8798. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Display. The manipulation leads to information disclosure. This vulnerability is handled as CVE-2023-32856. Local access is required to approach this attack. There is no exploit available. It is recommended to apply a patch to fix this...

Read More