First published: Tue Jan 03 2023(Updated: )
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220705066; Issue ID: GN20220705066.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mediatek Mt7603 Firmware | =7.6.6.0 | |
Thelinuxfoundation Yocto | =3.1 | |
Thelinuxfoundation Yocto | =3.3 | |
Mediatek Mt7603 | ||
Mediatek Mt7613 Firmware | =7.6.6.0 | |
Mediatek Mt7613 | ||
Mediatek Mt7615 Firmware | =7.6.6.0 | |
Mediatek Mt7615 | ||
Mediatek Mt7622 Firmware | =7.6.6.0 | |
Mediatek Mt7622 | ||
Mediatek Mt7628 Firmware | =7.6.6.0 | |
Mediatek Mt7628 | ||
Mediatek Mt7629 Firmware | =7.6.6.0 | |
Mediatek Mt7629 | ||
Mediatek Mt7915 Firmware | =7.6.6.0 | |
Mediatek Mt7915 | ||
Mediatek Mt7916 Firmware | =7.6.6.0 | |
Mediatek Mt7916 | ||
Mediatek Mt7981 Firmware | =7.6.6.0 | |
Mediatek Mt7981 | ||
Mediatek Mt7986 Firmware | =7.6.6.0 | |
Mediatek Mt7986 | ||
Mediatek Mt8518s Firmware | =7.6.6.0 | |
Mediatek Mt8518s | ||
Mediatek Mt8532 Firmware | =7.6.6.0 | |
Mediatek Mt8532 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-32659 is medium.
No, user interaction is not needed for exploitation of CVE-2022-32659.
The patch ID for CVE-2022-32659 is GN20220705066.
The affected software versions are: mt7603_firmware 7.6.6.0, yocto 3.1, yocto 3.3, mt7613_firmware 7.6.6.0, mt7615_firmware 7.6.6.0, mt7622_firmware 7.6.6.0, mt7628_firmware 7.6.6.0, mt7629_firmware 7.6.6.0, mt7915_firmware 7.6.6.0, mt7916_firmware 7.6.6.0, mt7981_firmware 7.6.6.0, mt7986_firmware 7.6.6.0, mt8518s_firmware 7.6.6.0, mt8532_firmware 7.6.6.0.
The Common Weakness Enumeration (CWE) ID for CVE-2022-32659 is 755.