Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

304 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.67%—Mediatek Nr16Mediatek Nr173/6/202417/6/2026
In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is no needed for exploitation. Patch ID: MOLY01267281; Issue ID: MSV-1477.
AnalizadaMedia (6.3)0.08%—Linuxfoundation YoctoMediatek IOT YoctoGoogle Android1/4/202417/6/2026
In imgsys, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation Patch ID: ALPS08518692; Issue ID: MSV-1012.
AnalizadaAlta (8.8)0.88%—Mediatek Lr12aMediatek Lr13Mediatek Nr15Mediatek Nr16+11/4/202417/6/2026
In modem protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01240012; Issue ID: MSV-1215.
AnalizadaMedia (5.9)0.72%—Mediatek Software Package4/3/202417/6/2026
In wlan driver, there is a possible memory leak due to improper input handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00351241; Issue ID: MSV-1173.
AnalizadaCrítica (9.8)0.98%—Mediatek Software Development KIT4/3/202417/6/2026
In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00348479; Issue ID: MSV-1019.
AnalizadaCrítica (9.8)47%💥 PoCMediatek Software Development KITOpenwrt4/3/202417/6/2026
In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation Patch ID: WCNCR00350938; Issue ID: MSV-1132.
ModificadaAlta (7.5)1.2%—Mediatek Nr155/2/202417/6/2026
In Modem NL1, there is a possible system crash due to an improper input validation. This could lead to remote denial of service, if NW sent invalid NR RRC Connection Setup message, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01191612; Issue ID:…
ModificadaAlta (7.5)1.1%—Mediatek Nr155/2/202417/6/2026
In Modem NL1, there is a possible system crash due to an improper input validation. This could lead to remote denial of service, if NW sent invalid NR RRC Connection Setup message, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01191612; Issue ID:…
ModificadaMedia (6.7)0.09%—Google AndroidMediatek Lr13Mediatek Nr15Mediatek Nr16+12/1/202417/6/2026
In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07933038; Issue ID: MSV-559.
ModificadaAlta (7.5)0.76%—Mediatek Lr13Mediatek Nr15Mediatek Nr16Mediatek Nr172/1/202417/6/2026
In modem EMM, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01183647; Issue ID: MOLY01183647 (MSV-963).
ModificadaAlta (7.5)0.95%—Mediatek Nr15Mediatek Nr16Mediatek Nr172/1/202417/6/2026
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161830; Issue ID: MOLY01161830 (MSV-894).
ModificadaAlta (7.5)0.95%—Mediatek Nr15Mediatek Nr16Mediatek Nr172/1/202417/6/2026
In Modem IMS Stack, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161837; Issue ID: MOLY01161837 (MSV-892).
ModificadaAlta (7.5)0.84%—Mediatek Nr15Mediatek Nr16Mediatek Nr172/1/202417/6/2026
In Modem IMS SMS UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00730807; Issue ID: MOLY00730807.
ModificadaCrítica (9.8)1.0%—Mediatek Lr13Mediatek Nr15Mediatek Nr16Mediatek Nr172/1/202417/6/2026
In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161803; Issue ID: MOLY01161803 (MSV-893).
ModificadaMedia (5.5)0.18%—Mediatek Software Development KIT2/1/202417/6/2026
In wlan driver, there is a possible PIN crack due to use of insufficiently random values. This could lead to local information disclosure with no execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00325055; Issue ID: MSV-868.
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01138453 (MSV-861).
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01139296 (MSV-860).
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01130183 (MSV-850).
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01130204; Issue ID: MOLY01130204 (MSV-849).
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01130256; Issue ID: MOLY01130256 (MSV-848).
ModificadaAlta (7.5)1.4%—Mediatek Nr15Mediatek Nr16Mediatek Nr174/12/202317/6/2026
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01128524 (MSV-846).
ModificadaMedia (6.5)0.18%—Mediatek Lr12aMediatek Nr15Mediatek Nr16Mediatek Nr176/11/202317/6/2026
In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction may be also needed for exploitation Patch ID: MOLY01138425; Issue ID: MOLY01138425 (MSV-862).
ModificadaAlta (7.5)1.1%—Mediatek Nr15Mediatek Nr16Mediatek Nr176/11/202317/6/2026
In 5G NRLC, there is a possible invalid memory access due to lack of error handling. This could lead to remote denial of service, if UE received invalid 1-byte rlc sdu, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00921261; Issue ID: MOLY01128895.
ModificadaMedia (6.7)0.09%—Linuxfoundation YoctoMediatek IOT YoctoGoogle Android2/10/202317/6/2026
In apusys, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07713478; Issue ID: ALPS07713478.
ModificadaMedia (6.7)0.10%—Mediatek IOT YoctoGoogle Android2/10/202317/6/2026
In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07767817; Issue ID: ALPS07767817.