First published: Mon Jun 06 2022(Updated: )
In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06477946; Issue ID: ALPS06477946.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =12.0 | |
Mediatek Mt6853 | ||
Mediatek Mt6873 | ||
Mediatek Mt6875 | ||
Mediatek Mt6877 | ||
Mediatek Mt6883 | ||
Mediatek Mt6885 | ||
Mediatek Mt6889 | ||
Mediatek Mt6891 | ||
Mediatek Mt6893 | ||
Mediatek Mt9636 | ||
Mediatek Mt9638 | ||
Mediatek Mt9666 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21762 is a vulnerability in the apusys driver that could lead to a system crash due to an integer overflow.
The severity of CVE-2022-21762 is medium, with a severity value of 4.4.
CVE-2022-21762 can be exploited without user interaction, and it requires system execution privileges.
Yes, a patch with ID ALPS06477946 is available to address the vulnerability.
You can find more information about CVE-2022-21762 in the Mediatek Product Security Bulletin for June 2022.