« Volver al listado

CVE-2022-26447

Estado: ModificadaCrítica (9.8)—

In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06784478; Issue ID: ALPS06784478.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2022-26447",
  "cveTags": [],
  "metrics": {
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "security@mediatek.com",
      "affectedData": [
        {
          "vendor": "MediaTek, Inc.",
          "product": "MT6580, MT6735, MT6737, MT6739, MT6750S, MT6753, MT6755S, MT6757, MT6757C, MT6757CD, MT6757CH, MT6763, MT6771, MT8163, MT8167, MT8167S, MT8173, MT8183, MT8321, MT8362A, MT8385, MT8518, MT8532, MT8765, MT8788",
          "versions": [
            {
              "status": "affected",
              "version": "Android 10.0, 11.0, 12.0 and Yocto 3.1"
            }
          ]
        }
      ]
    }
  ],
  "published": "2022-09-06T18:15:11.610",
  "references": [
    {
      "url": "https://corp.mediatek.com/product-security-bulletin/September-2022",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@mediatek.com"
    },
    {
      "url": "https://corp.mediatek.com/product-security-bulletin/September-2022",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-787"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06784478; Issue ID: ALPS06784478."
    },
    {
      "lang": "es",
      "value": "En BT firmware, es posible que se produzca una escritura fuera de límites debido a una falta de comprobación de límites. Esto podría conllevar a una ejecución de código remota sin ser necesarios privilegios de ejecución adicionales. No es requerida una interacción del usuario para su explotación. ID del Parche: ALPS06784478; ID de Incidencia: ALPS06784478.\n"
    }
  ],
  "lastModified": "2026-06-17T04:35:12.917",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D558D965-FA70-4822-A770-419E73BA9ED3"
            },
            {
              "criteria": "cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "109DD7FD-3A48-4C3D-8E1A-4433B98E1E64"
            },
            {
              "criteria": "cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F8FB8EE9-FC56-4D5E-AE55-A5967634740C"
            },
            {
              "criteria": "cpe:2.3:o:yoctoproject:yocto:3.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "987749DE-6EE9-401A-B2D4-B1680CAD0376"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:mediatek:mt6580:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "46F71838-4E50-4F2A-9EB8-30AE5DF8511E"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6735:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C82E144B-0BAD-47E1-A657-3A5880988FE2"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6737:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "4E76B29F-007E-4445-B3F3-3FDC054FEB84"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6739:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "7FA8A390-9F52-4CF3-9B45-936CE3E2B828"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6750s:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "12A1CB8F-3C1C-4374-8D46-23175D1174DE"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6753:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "7362AED0-47F2-4D48-A292-89F717F0697E"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6755s:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "7038AEA0-5BBE-44C9-92DE-96BDE3EEE45B"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6757:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "B4C27948-65A7-4B1E-9F10-6744D176A5C3"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6757c:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "D808EF4D-0A54-4324-8341-240F7AFABC40"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6757cd:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "64EDB89E-8140-4202-97B3-9D7337E90FDE"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6757ch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "D2C5CC4F-DA66-4980-A4BB-693987431A38"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6763:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "2F19C76A-50DF-4ACA-BACA-07157B4D838B"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt6771:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "BE4D2AED-C713-407F-A34A-52C3D8F65835"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8163:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "1D2ED140-C41B-418B-9DC7-8C486304E769"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8167:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "3B5FE245-6346-4078-A3D0-E5F79BB636B8"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8167s:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "639C5BDE-2E83-427A-BAB7-85EA9348AC68"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8173:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "4452EFCF-5733-40A0-8726-F8E33E569411"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8183:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "23F65D7B-31A1-4D94-82E9-254A7A6D7BE1"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "793B7F88-79E7-4031-8AD0-35C9BFD073C4"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8362a:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "2F16F2B9-D89D-4AB2-B768-CB3B22AEFE11"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8385:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "299378ED-41CE-4966-99B1-65D2BA1215EF"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8518:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "EE5E73E0-EF8D-4659-B447-66474BC05708"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8532:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "EE18D5C2-0423-4CE5-86E7-69E7BB131BBF"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "3AACF35D-27E0-49AF-A667-13585C8B8071"
            },
            {
              "criteria": "cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "FE10C121-F2AD-43D2-8FF9-A6C197858220"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "security@mediatek.com"
}