In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291294; Issue ID: MSV-2062.
History

Tue, 04 Mar 2025 03:45:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Mar 2025 19:45:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L'}


Mon, 03 Mar 2025 02:45:00 +0000

Type Values Removed Values Added
Description In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291294; Issue ID: MSV-2062.
Weaknesses CWE-125
References

cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published: 2025-03-03T02:25:47.228Z

Updated: 2025-03-03T19:01:46.250Z

Reserved: 2024-11-01T01:21:50.366Z

Link: CVE-2025-20651

cve-icon Vulnrichment

Updated: 2025-03-03T16:39:44.941Z

cve-icon NVD

Status : Received

Published: 2025-03-03T03:15:09.950

Modified: 2025-03-03T19:15:34.823

Link: CVE-2025-20651

cve-icon Redhat

No data.