First published: Tue Jan 02 2024(Updated: )
In wlan driver, there is a possible PIN crack due to use of insufficiently random values. This could lead to local information disclosure with no execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00325055; Issue ID: MSV-868.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Mediatek Linkit Software Development Kit | <=7.6.7.1 | |
Any of | ||
MediaTek MT6890 | ||
MediaTek MT7612 firmware | ||
MediaTek MT7613 | ||
MediaTek MT7615 Firmware | ||
MediaTek MT7622 Firmware | ||
MediaTek MT7626 | ||
MediaTek MT7629 Firmware | ||
mediatek mt7915 firmware | ||
MediaTek MT7916 Firmware | ||
MediaTek MT7981 Firmware | ||
MediaTek MT7986 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32831 is classified as a local information disclosure vulnerability.
To fix CVE-2023-32831, apply the patch identified by WCNCR00325055.
Exploitation of CVE-2023-32831 could lead to local information disclosure without requiring execution privileges.
No, user interaction is not needed for the exploitation of CVE-2023-32831.
CVE-2023-32831 affects devices utilizing the MediaTek Software Development Kit version up to 7.6.7.1.