← Back

CVE-2022-26437

nvd nist
Published: Aug 1, 2022Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

In httpclient, there is a possible out of bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WSAP00103831; Issue ID: WSAP00103831.

Affected (1)

Products: Mediatek: Nbiot Sdk
1 product
Nbiot Sdk
Configuration A
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Version 2.8.1
Running on/withPlatform Versions
Mediatek
Mt2621
All versions
Mediatek
Mt2625
All versions

References (2)

Source: security@mediatek.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.