In vdec, there is a possible permission bypass due to a permissions bypass. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08509508; Issue ID: ALPS08509508.
History

Thu, 20 Mar 2025 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek
Mediatek mt6835
Mediatek mt6855
Mediatek mt6879
Mediatek mt6886
Mediatek mt6895
Mediatek mt6983
Mediatek mt6985
Mediatek mt8792
Mediatek mt8796
Mediatek mt8798
CPEs cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8792:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8796:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*
Vendors & Products Mediatek
Mediatek mt6835
Mediatek mt6855
Mediatek mt6879
Mediatek mt6886
Mediatek mt6895
Mediatek mt6983
Mediatek mt6985
Mediatek mt8792
Mediatek mt8796
Mediatek mt8798
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 20 Mar 2025 19:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284

Mon, 26 Aug 2024 22:00:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2025-03-20T19:08:25.591Z

Reserved: 2023-11-02T13:35:35.153Z

Link: CVE-2024-20036

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:31.630Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-04T03:15:07.717

Modified: 2025-03-20T19:15:27.843

Link: CVE-2024-20036

cve-icon Redhat

No data.