In preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07733998 / ALPS07874388 (For MT6880 and MT6890 only); Issue ID: ALPS07733998 / ALPS07874388 (For MT6880 and MT6890 only).
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Mediatek
Subscribe
|
Mt6580
Subscribe
Mt6739
Subscribe
Mt6761
Subscribe
Mt6765
Subscribe
Mt6768
Subscribe
Mt6769
Subscribe
Mt6771
Subscribe
Mt6779
Subscribe
Mt6785
Subscribe
Mt6789
Subscribe
Mt6853
Subscribe
Mt6855
Subscribe
Mt6873
Subscribe
Mt6879
Subscribe
Mt6880
Subscribe
Mt6885
Subscribe
Mt6890
Subscribe
Mt6895
Subscribe
Mt6983
Subscribe
Mt8167
Subscribe
Mt8175
Subscribe
Mt8185
Subscribe
Mt8195
Subscribe
Mt8321
Subscribe
Mt8365
Subscribe
Mt8385
Subscribe
Mt8395
Subscribe
Mt8666
Subscribe
Mt8667
Subscribe
Mt8673
Subscribe
Mt8675
Subscribe
Mt8765
Subscribe
Mt8766
Subscribe
Mt8768
Subscribe
Mt8781
Subscribe
Mt8786
Subscribe
Mt8788
Subscribe
Mt8789
Subscribe
Mt8791
Subscribe
Mt8791t
Subscribe
Mt8797
Subscribe
|
|
Openwrt
Subscribe
|
Openwrt
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/May-2023 |
|
History
Thu, 23 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2025-01-23T21:33:03.006Z
Reserved: 2022-10-28T00:00:00.000Z
Link: CVE-2023-20694
Updated: 2024-08-02T09:14:40.774Z
Status : Modified
Published: 2023-05-15T22:15:10.480
Modified: 2025-01-23T22:15:09.850
Link: CVE-2023-20694
No data.
OpenCVE Enrichment
No data.
Weaknesses