Mediatek
Mediatek Lr13: vulnerabilidades y CVE
Mediatek Lr13 tiene 15 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE15
Últimos 12 meses1
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-20434 | Alta (7.5) | 0.23% | — | 2 mar 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20678 | Media (6.5) | 0.36% | — | 2 jun 2025 | In ims service, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20667 | Alta (7.5) | 0.43% | — | 5 may 2025 | In Modem, there is a possible information disclosure due to incorrect error handling. This could lead to remote information disclosure, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2024-20154 | Alta (8.8) | 3.9% | — | 6 ene 2025 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2024-20150 | Alta (7.5) | 0.76% | — | 6 ene 2025 | In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID:… |
| CVE-2024-20149 | Alta (7.5) | 0.72% | — | 6 ene 2025 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2024-20039 | Alta (8.8) | 0.88% | — | 1 abr 2024 | In modem protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for… |
| CVE-2023-32891 | Media (6.7) | 0.09% | — | 2 ene 2024 | In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed… |
| CVE-2023-32890 | Alta (7.5) | 0.76% | — | 2 ene 2024 | In modem EMM, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for… |
| CVE-2023-32874 | Crítica (9.8) | 1.0% | — | 2 ene 2024 | In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for… |
| CVE-2023-20819 | Crítica (9.8) | 0.61% | — | 2 oct 2023 | In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not… |
| CVE-2022-26446 | Alta (7.5) | 1.1% | — | 8 nov 2022 | In Modem 4G RRC, there is a possible system crash due to improper input validation. This could lead to remote denial of service, when concatenating improper SIB12 (CMAS message), with no additional execution privileges… |
| CVE-2022-21744 | Crítica (9.8) | 3.4% | — | 6 jul 2022 | In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) improper neighbouring cell size with… |
| CVE-2022-20083 | Crítica (9.8) | 2.8% | — | 6 jul 2022 | In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additional execution privileges needed. User… |
| CVE-2021-40148 | Alta (7.5) | 0.74% | — | 4 ene 2022 | In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed… |