Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Mediatek Subscribe
Filtered by product Linkit Software Development Kit
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-32665 1 Mediatek 3 En7528, En7580, Linkit Software Development Kit 2023-01-10 N/A 9.8 CRITICAL
In Boa, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20220026; Issue ID: OSBNB00144124.
CVE-2022-32664 1 Mediatek 7 En7516, En7528, En7529 and 4 more 2023-01-10 N/A 8.8 HIGH
In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with User execution privileges needed. User interaction is needed for exploitation. Patch ID: A20220004; Issue ID: OSBNB00140929.
CVE-2021-30636 1 Mediatek 1 Linkit Software Development Kit 2022-01-27 7.5 HIGH 9.8 CRITICAL
In MediaTek LinkIt SDK before 4.6.1, there is a possible memory corruption due to an integer overflow during mishandled memory allocation by pvPortCalloc and pvPortRealloc.