Mediatek
Mediatek Mt7902 Firmware: vulnerabilidades y CVE
Mediatek Mt7902 Firmware tiene 10 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses3
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-20495 | Alta (7.8) | 0.15% | — | 3 ago 2026 | In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for… |
| CVE-2026-20482 | Media (6.5) | 0.30% | — | 3 ago 2026 | In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not… |
| CVE-2026-20456 | Media (5.5) | 0.10% | — | 1 jun 2026 | In wlan STA driver, there is a possible system crash due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2025-20675 | Media (5.5) | 0.15% | — | 2 jun 2025 | In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch… |
| CVE-2025-20673 | Media (5.5) | 0.16% | — | 2 jun 2025 | In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch… |
| CVE-2025-20672 | Crítica (9.8) | 0.64% | — | 2 jun 2025 | In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for… |
| CVE-2022-32663 | Alta (7.5) | 1.6% | — | 6 feb 2023 | In Wi-Fi driver, there is a possible system crash due to null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for… |
| CVE-2022-32656 | Media (6.7) | 0.31% | — | 6 feb 2023 | In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for… |
| CVE-2022-32655 | Media (6.7) | 0.31% | — | 6 feb 2023 | In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for… |
| CVE-2022-32654 | Media (6.7) | 0.31% | — | 6 feb 2023 | In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.