CVE-2021-0666: Medium severity android vulnerability
Published Nov 18, 2021
·Updated
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05672086; Issue ID: ALPS05672086.
Affected Software
21 affected components
Google Android=11.0
MediaTek Mt6873
MediaTek Mt6875
MediaTek Mt6877
MediaTek Mt6883
MediaTek Mt6885
MediaTek Mt6889
MediaTek Mt6891
MediaTek Mt8195
MediaTek Mt8791
MediaTek Mt8797
MediaTek Mt9636
MediaTek Mt9638
MediaTek Mt9639
MediaTek Mt9650
MediaTek Mt9652
MediaTek Mt9669
MediaTek Mt9686
MediaTek Mt9970
MediaTek Mt9980
MediaTek Mt9981
Event History
Nov 18, 2021
CVE Published
via MITRE·02:58 PM
Data Sourced
via MITRE·02:58 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-0666.
2
What is the severity of CVE-2021-0666?
The severity of CVE-2021-0666 is medium with a CVSS score of 4.4.
3
What software is affected by CVE-2021-0666?
The affected software is Google Android version 11.0.
4
Is user interaction required to exploit CVE-2021-0666?
No, user interaction is not needed for exploitation of CVE-2021-0666.
5
How can I fix CVE-2021-0666?
To fix CVE-2021-0666, apply the patch with ID ALPS05672086 from the official Mediatek website.