CVE-2022-39120
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD
Description
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Affected (3)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0 |
| Running on/with | Platform Versions |
|---|---|
Unisoc S8000 | All versions |
Unisoc Sc7731e | All versions |
Unisoc Sc9832e | All versions |
Unisoc Sc9863a | All versions |
Unisoc T310 | All versions |
Unisoc T606 | All versions |
Unisoc T610 | All versions |
Unisoc T612 | All versions |
Unisoc T616 | All versions |
Unisoc T618 | All versions |
Unisoc T760 | All versions |
Unisoc T770 | All versions |
Unisoc T820 | All versions |
Related CWEs
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CWE-787
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
References (2)
Source: security@unisoc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.