Vulnerability

CVE-2021-40148

Component: CELLULAR
Location: FIRMWARE
In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00716585; Issue ID: ALPS05886933.

Impact

Severity (Manufact.)

HIGH

Severity (NIST)

7.5

Severity (Android)

N/A

Chipsets

68

Devices

1448

Affected Hardware

NameAlso known asManufacturer
MT6739
MediaTek
MT6761V/WE
Helio A20
MediaTek
MT6761V/WAB
Helio A22
MediaTek
MT6761V/WBB
Helio A22
MediaTek
MT6762V/WB
Helio A25
MediaTek
MT6762V/WD
Helio A25
MediaTek
MT6762
Helio P22
MediaTek
MT6763/6763T
Helio P23
MediaTek
MT6765
Helio P35
MediaTek
MT6771
Helio P60
MediaTek
68 of 68 row(s) shown.

Rows per page

Page 1 of 7

Timeline

Introduced (est):
Jul 1, 2017
Reported:
Unknown
Advisory Published:
Jan 3, 2022
CVE Published:
Jan 4, 2022
Android Patch Level:
Jan 2022
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter