VDB

CVE-2021-0624

CVE-2021-0624 PUBLISHED CVSS 5.5 MEDIUM

In flv extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594988; Issue ID: ALPS05594988.

EPSS 0.13% · 2.6th percentile

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.13%
2.6th percentile

Affected Products

VendorProductVersions
googleandroid10.0, 11.0
n/aMT6580, MT6735, MT6737, MT6739, MT6750S, MT6753, MT6755S, MT6757, MT6757C, MT6757CD, MT6757CH, MT6761, MT6762, MT6763, MT6765, MT6768, MT6771, MT6779, MT6785, MT6833, MT6853, MT6853T, MT6873, MT6877, MT6885, MT6889, MT6893, MT8163, MT8167, MT8167S, MT8168, MT8173, MT8175, MT8183, MT8185, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8735A, MT8735B, MT8765, MT8766, MT8768, MT8786, MT8788, MT8789, MT8791, MT8797Android 10.0, 11.0

Timeline

  • Nov 18, 2021 CVE Published
  • Nov 19, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Jan 13, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 4, 2022 EPSS Score
  • Jun 28, 2022 EPSS Score
  • Aug 24, 2022 EPSS Score
  • Oct 18, 2022 EPSS Score
  • Dec 12, 2022 EPSS Score
  • Feb 6, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›