In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.
Link | Tags |
---|---|
https://www.unisoc.com/en_us/secy/announcementDetail/1621031430231134210 | vendor advisory |