CVE-2021-0421

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
27/09/2021
Last modified:
05/10/2021

Description

In memory management driver, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05381235.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6580:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6582_90:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6582e:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6582h:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6582t:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6582w:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6589:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6589td:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6592_90:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6592e:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6592h:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6592t:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6592w:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools