In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: MOLY01068234; Issue ID: ALPS08010003.

Project Subscriptions

Vendors Products
Mediatek Subscribe
Mt6737m Subscribe
Mt6750s Subscribe
Mt6762d Subscribe
Mt6762m Subscribe
Mt6765t Subscribe
Mt6769t Subscribe
Mt6769z Subscribe
Mt6785t Subscribe
Mt6875t Subscribe
Mt6895t Subscribe
Mt8666a Subscribe
Mt8766z Subscribe
Mt8768a Subscribe
Mt8768b Subscribe
Mt8768t Subscribe
Mt8768z Subscribe
Mt8788t Subscribe
Mt8788x Subscribe
Mt8788z Subscribe
Mt8791t Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-24998 In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: MOLY01068234; Issue ID: ALPS08010003.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 21 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2024-09-21T15:27:05.080Z

Reserved: 2022-10-28T02:03:23.673Z

Link: CVE-2023-20819

cve-icon Vulnrichment

Updated: 2024-08-02T09:14:40.994Z

cve-icon NVD

Status : Modified

Published: 2023-10-02T03:15:09.710

Modified: 2024-11-21T07:41:36.283

Link: CVE-2023-20819

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses