HIGH · 7.5

CVE-2022-32663

In Wi-Fi driver, there is a possible system crash due to null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not n...

Vulnerability Description

In Wi-Fi driver, there is a possible system crash due to null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220720014; Issue ID: GN20220720014.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
MediatekMt5221 Firmware7.6.6.1
MediatekMt5221-
MediatekMt7603 Firmware7.6.6.1
MediatekMt7603-
MediatekMt7613 Firmware7.6.6.1
MediatekMt7613-
MediatekMt7615 Firmware7.6.6.1
MediatekMt7615-
MediatekMt7622 Firmware7.6.6.1
MediatekMt7622-
MediatekMt7628 Firmware7.6.6.1
MediatekMt7628-
MediatekMt7629 Firmware7.6.6.1
MediatekMt7629-
MediatekMt7668 Firmware7.6.6.1
MediatekMt7668-
MediatekMt7902 Firmware7.6.6.1
MediatekMt7902-
MediatekMt7915 Firmware7.6.6.1
MediatekMt7915-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-32663?

CVE-2022-32663 is a vulnerability with a CVSS score of 7.5 (HIGH). In Wi-Fi driver, there is a possible system crash due to null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not n...

How severe is CVE-2022-32663?

CVE-2022-32663 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-32663?

Check the references section above for vendor advisories and patch information. Affected products include: Mediatek Mt5221 Firmware, Mediatek Mt5221, Mediatek Mt7603 Firmware, Mediatek Mt7603, Mediatek Mt7613 Firmware.