CVE-2022-32654: Medium severity mediatek mt5221 vulnerability
Published Feb 6, 2023
·Updated
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220705011; Issue ID: GN20220705011.
Affected Software
120 affected components
MediaTek Mt5221 Firmware=7.6.6.0
MediaTek Mt5221
MediaTek Mt7603 Firmware=7.6.6.0
MediaTek Mt7603
MediaTek Mt7613 Firmware=7.6.6.0
MediaTek MT7613
MediaTek Mt7615 Firmware=7.6.6.0
MediaTek MT7615
MediaTek Mt7622 Firmware=7.6.6.0
MediaTek MT7622
MediaTek Mt7628 Firmware=7.6.6.0
MediaTek MT7628
MediaTek Mt7629 Firmware=7.6.6.0
MediaTek MT7629
MediaTek Mt7663 Firmware=7.6.6.0
MediaTek Mt7663
MediaTek Mt7668 Firmware=7.6.6.0
MediaTek Mt7668
MediaTek Mt7682 Firmware=7.6.6.0
MediaTek Mt7682
MediaTek Mt7686 Firmware=7.6.6.0
MediaTek Mt7686
MediaTek Mt7687 Firmware=7.6.6.0
MediaTek Mt7687
MediaTek Mt7697 Firmware=7.6.6.0
MediaTek Mt7697
MediaTek Mt7902 Firmware=7.6.6.0
MediaTek Mt7902
MediaTek Mt7915 Firmware=7.6.6.0
MediaTek MT7915
MediaTek Mt7916 Firmware=7.6.6.0
MediaTek Mt7916
MediaTek Mt7921 Firmware=7.6.6.0
MediaTek Mt7921
MediaTek Mt7933 Firmware=7.6.6.0
MediaTek Mt7933
MediaTek Mt7981 Firmware=7.6.6.0
MediaTek Mt7981
MediaTek Mt7986 Firmware=7.6.6.0
MediaTek Mt7986
MediaTek Mt8167s Firmware=7.6.6.0
MediaTek Mt8167s
MediaTek Mt8175 Firmware=7.6.6.0
MediaTek Mt8175
MediaTek Mt8362a Firmware=7.6.6.0
MediaTek Mt8362a
MediaTek Mt8365 Firmware=7.6.6.0
MediaTek Mt8365
MediaTek Mt8385 Firmware=7.6.6.0
MediaTek Mt8385
MediaTek Mt8518s Firmware=7.6.6.0
MediaTek Mt8518s
MediaTek Mt8532 Firmware=7.6.6.0
MediaTek Mt8532
MediaTek Mt8695 Firmware=7.6.6.0
MediaTek Mt8695
MediaTek Mt8696 Firmware=7.6.6.0
MediaTek Mt8696
MediaTek Mt8788 Firmware=7.6.6.0
MediaTek Mt8788
All of the following
MediaTek Mt5221 Firmware=7.6.6.0
MediaTek Mt5221
All of the following
MediaTek Mt7603 Firmware=7.6.6.0
MediaTek Mt7603
All of the following
MediaTek Mt7613 Firmware=7.6.6.0
MediaTek MT7613
All of the following
MediaTek Mt7615 Firmware=7.6.6.0
MediaTek MT7615
All of the following
MediaTek Mt7622 Firmware=7.6.6.0
MediaTek MT7622
All of the following
MediaTek Mt7628 Firmware=7.6.6.0
MediaTek MT7628
All of the following
MediaTek Mt7629 Firmware=7.6.6.0
MediaTek MT7629
All of the following
MediaTek Mt7663 Firmware=7.6.6.0
MediaTek Mt7663
All of the following
MediaTek Mt7668 Firmware=7.6.6.0
MediaTek Mt7668
All of the following
MediaTek Mt7682 Firmware=7.6.6.0
MediaTek Mt7682
All of the following
MediaTek Mt7686 Firmware=7.6.6.0
MediaTek Mt7686
All of the following
MediaTek Mt7687 Firmware=7.6.6.0
MediaTek Mt7687
All of the following
MediaTek Mt7697 Firmware=7.6.6.0
MediaTek Mt7697
All of the following
MediaTek Mt7902 Firmware=7.6.6.0
MediaTek Mt7902
All of the following
MediaTek Mt7915 Firmware=7.6.6.0
MediaTek MT7915
All of the following
MediaTek Mt7916 Firmware=7.6.6.0
MediaTek Mt7916
All of the following
MediaTek Mt7921 Firmware=7.6.6.0
MediaTek Mt7921
All of the following
MediaTek Mt7933 Firmware=7.6.6.0
MediaTek Mt7933
All of the following
MediaTek Mt7981 Firmware=7.6.6.0
MediaTek Mt7981
All of the following
MediaTek Mt7986 Firmware=7.6.6.0
MediaTek Mt7986
All of the following
MediaTek Mt8167s Firmware=7.6.6.0
MediaTek Mt8167s
All of the following
MediaTek Mt8175 Firmware=7.6.6.0
MediaTek Mt8175
All of the following
MediaTek Mt8362a Firmware=7.6.6.0
MediaTek Mt8362a
All of the following
MediaTek Mt8365 Firmware=7.6.6.0
MediaTek Mt8365
All of the following
MediaTek Mt8385 Firmware=7.6.6.0
MediaTek Mt8385
All of the following
MediaTek Mt8518s Firmware=7.6.6.0
MediaTek Mt8518s
All of the following
MediaTek Mt8532 Firmware=7.6.6.0
MediaTek Mt8532
All of the following
MediaTek Mt8695 Firmware=7.6.6.0
MediaTek Mt8695
All of the following
MediaTek Mt8696 Firmware=7.6.6.0
MediaTek Mt8696
All of the following
MediaTek Mt8788 Firmware=7.6.6.0
MediaTek Mt8788
Event History
Feb 6, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-32654?
CVE-2022-32654 has a severity classification that can lead to local escalation of privilege.
2
How do I fix CVE-2022-32654?
To fix CVE-2022-32654, you need to apply the patch identified as GN20220705011.
3
What systems are affected by CVE-2022-32654?
CVE-2022-32654 affects several MediaTek firmware versions, specifically those on version 7.6.6.0.
4
Is user interaction required to exploit CVE-2022-32654?
No, user interaction is not required for the exploitation of CVE-2022-32654.
5
What are the potential consequences of CVE-2022-32654?
The potential consequence of CVE-2022-32654 is undefined behavior in the Wi-Fi driver leading to local escalation of privilege.