7.5

CVE-2020-14127

A denial of service vulnerability exists in some Xiaomi models of phones. The vulnerability is caused by heap overflow and can be exploited by attackers to make remote denial of service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mi ≫ Miui Version < 2022.07.01
   Mi ≫ Redmi K40 Version -
   Mi ≫ Redmi Note 10 Pro Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1% 0.594
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

https://trust.mi.com/zh-CN/misrc/bulletins/advisory?cveId=169
Vendor Advisory