In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09001358; Issue ID: MSV-1599.
Metrics
Affected Vendors & Products
References
History
Mon, 07 Oct 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android Mediatek Mediatek mt3605 Mediatek mt6985 Mediatek mt6989 Mediatek mt6990 Mediatek mt7927 Mediatek mt8183 Mediatek mt8512 Mediatek mt8678 Mediatek mt8695 Mediatek mt8698 Mediatek mt8796 Mediatek mt8893 |
|
CPEs | cpe:2.3:h:mediatek:mt3605:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7927:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8183:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8512:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8695:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8698:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8796:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8893:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Google
Google android Mediatek Mediatek mt3605 Mediatek mt6985 Mediatek mt6989 Mediatek mt6990 Mediatek mt7927 Mediatek mt8183 Mediatek mt8512 Mediatek mt8678 Mediatek mt8695 Mediatek mt8698 Mediatek mt8796 Mediatek mt8893 |
|
Metrics |
cvssV3_1
|
Mon, 07 Oct 2024 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09001358; Issue ID: MSV-1599. | |
Weaknesses | CWE-787 | |
References |
|
MITRE
Status: PUBLISHED
Assigner: MediaTek
Published: 2024-10-07T02:35:15.849Z
Updated: 2024-10-07T13:39:53.535Z
Reserved: 2023-11-02T13:35:35.176Z
Link: CVE-2024-20103
Vulnrichment
Updated: 2024-10-07T13:33:14.710Z
NVD
Status : Awaiting Analysis
Published: 2024-10-07T03:15:03.500
Modified: 2024-10-07T19:36:43.530
Link: CVE-2024-20103
Redhat
No data.