First published: Thu Sep 09 2021(Updated: )
In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00500621; Issue ID: ALPS04964928.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MediaTek Modem | =lr12a | |
MediaTek Modem | =lr13 | |
MediaTek MT6739 | ||
MediaTek MT6761 | ||
MediaTek MT6762M | ||
MediaTek MT6762 | ||
MediaTek MT6762 | ||
MediaTek MT6763 | ||
MediaTek MT6765 | ||
MediaTek MT6765T | ||
MediaTek MT6767 | ||
MediaTek MT6768 | ||
MediaTek MT6769 | ||
MediaTek MT6769T | ||
MediaTek MT6769 | ||
MediaTek MT6771 | ||
MediaTek MT6779 | ||
MediaTek MT6783 | ||
MediaTek MT6785T | ||
MediaTek MT6785T |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-32486 is a vulnerability in modem 2G RRM that could lead to a system crash due to a heap buffer overflow, resulting in remote denial of service.
CVE-2021-32486 has a severity rating of 7.5 (high).
Mediatek Modem versions lr12a and lr13 are affected by CVE-2021-32486.
No, user interaction is not needed for exploitation of CVE-2021-32486.
To patch CVE-2021-32486, apply the Patch ID: MOLY00500621 provided by Mediatek.