Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-26437


In httpclient, there is a possible out of bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WSAP00103831; Issue ID: WSAP00103831.


Published

2022-08-01T14:15:09.493

Last Modified

2024-11-21T06:53:56.750

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-908

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mediatek nbiot_sdk 2.8.1 Yes
Hardware mediatek mt2621 - No
Hardware mediatek mt2625 - No

References