Vulnerabilidades em Unisoc (Shanghai) Technologies Co., Ltd.

656 resultados
Análise Vexday

Com 647 CVEs catalogadas e nenhuma presença no catálogo KEV da CISA, a Unisoc apresenta taxa de exploração ativa abaixo da média geral do catálogo, o que sugere baixa pressão ofensiva documentada no momento. O tipo de falha mais recorrente é CWE-862 (ausência de verificação de autorização), padrão que, quando explorado, permite acesso não autorizado a recursos ou funcionalidades restritas e merece atenção especial em revisões de código e hardening. A CVE mais relevante no contexto atual é CVE-2025-31715, com escore EPSS de 0,0156, indicando probabilidade de exploração ainda baixa, mas que deve ser monitorada dado seu destaque entre as ameaças ativas. As 6 vulnerabilidades surgidas nos últimos 90 dias e a ausência de PoCs públicas apontam para um perfil de risco moderado, embora a presença de 4 CVEs críticas reforce a necessidade de acompanhamento contínuo das atualizações do fabricante.

CVE-2022-42757LOWIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-42758LOWIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-42765MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-42782MEDIUMIn wlan driver, there is a possible missing permission check, This could lead to local information disclosure.EPSS 0.1%CVE-2023-33882In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2022-42772MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-48384HIGHIn srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executionEPSS 0.1%CVE-2022-42767MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2024-39441HIGHIn wifi display, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executionEPSS 0.1%CVE-2022-42766MEDIUMIn wlan driver, there is a possible missing permission check, This could lead to local information disclosure.EPSS 0.1%CVE-2022-39089MEDIUMIn mlog service, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with SysteEPSS 0.1%CVE-2023-33904In hci_server, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with SystemEPSS 0.1%CVE-2023-33905MEDIUMIn iwnpi server, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with SysEPSS 0.1%CVE-2023-33903In FM service, there is a possible missing params check. This could lead to local denial of service with System execution privileges neededEPSS 0.1%CVE-2023-42722In camera service, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with System exeEPSS 0.1%CVE-2022-48383HIGH.In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2023-33896In libimpl-ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with SysteEPSS 0.1%CVE-2023-33897In libimpl-ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with SysteEPSS 0.1%CVE-2023-42680In gpu driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System EPSS 0.1%CVE-2023-42682In gsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with SystemEPSS 0.1%