In atf spm, there is a possible way to remap physical memory to virtual memory due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08584568; Issue ID: MSV-1249.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Mediatek
Subscribe
|
Mt6768
Subscribe
Mt6781
Subscribe
Mt6785
Subscribe
Mt6833
Subscribe
Mt6853
Subscribe
Mt6873
Subscribe
Mt6877
Subscribe
Mt6885
Subscribe
Mt6893
Subscribe
Mt8168
Subscribe
Mt8183
Subscribe
Mt8188
Subscribe
Mt8188t
Subscribe
Mt8195
Subscribe
Mt8195z
Subscribe
Mt8321
Subscribe
Mt8362a
Subscribe
Mt8365
Subscribe
Mt8385
Subscribe
Mt8666
Subscribe
Mt8666a
Subscribe
Mt8666b
Subscribe
Mt8667
Subscribe
Mt8673
Subscribe
Mt8675
Subscribe
Mt8676
Subscribe
Mt8678
Subscribe
Mt8765
Subscribe
Mt8766
Subscribe
Mt8766z
Subscribe
Mt8768
Subscribe
Mt8768a
Subscribe
Mt8768b
Subscribe
Mt8768t
Subscribe
Mt8768z
Subscribe
Mt8781
Subscribe
Mt8786
Subscribe
Mt8788
Subscribe
Mt8788t
Subscribe
Mt8788x
Subscribe
Mt8788z
Subscribe
Mt8792
Subscribe
Mt8795t
Subscribe
Mt8796
Subscribe
Mt8798
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/May-2024 |
|
History
Wed, 30 Apr 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Mediatek mt8385 Mediatek mt8666b Mediatek mt8676 Mediatek mt8678 |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8385:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8666b:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8676:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android Mediatek mt8385 Mediatek mt8666b Mediatek mt8676 Mediatek mt8678 |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2024-08-01T21:52:31.733Z
Reserved: 2023-11-02T13:35:35.151Z
Link: CVE-2024-20021
Updated: 2024-05-10T16:14:05.762Z
Status : Analyzed
Published: 2024-05-06T03:15:09.477
Modified: 2025-04-30T16:42:17.380
Link: CVE-2024-20021
No data.
OpenCVE Enrichment
No data.
Weaknesses