CVE-2024-20067
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
In modem, there is a possible out of bounds write due to improper input invalidation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01267285; Issue ID: MSV-1462.
Affected (2)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| All versions |
| Running on/with | Platform Versions |
|---|---|
Mediatek Mt6813 | All versions |
Mediatek Mt6815 | All versions |
Mediatek Mt6835 | All versions |
Mediatek Mt6878 | All versions |
Mediatek Mt6897 | All versions |
Mediatek Mt6899 | All versions |
Mediatek Mt6986 | All versions |
Mediatek Mt6986d | All versions |
Mediatek Mt6991 | All versions |
Mediatek Mt8792 | All versions |
References (2)
Source: security@mediatek.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.