In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09290940; Issue ID: MSV-2040.
Metrics
Affected Vendors & Products
References
History
Mon, 06 Jan 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Mon, 06 Jan 2025 03:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09290940; Issue ID: MSV-2040. | |
Weaknesses | CWE-787 | |
References |
|
MITRE
Status: PUBLISHED
Assigner: MediaTek
Published: 2025-01-06T03:17:48.166Z
Updated: 2025-01-06T14:18:04.465Z
Reserved: 2023-11-02T13:35:35.185Z
Link: CVE-2024-20145
Vulnrichment
Updated: 2025-01-06T14:17:48.972Z
NVD
Status : Awaiting Analysis
Published: 2025-01-06T04:15:06.850
Modified: 2025-01-06T15:15:12.077
Link: CVE-2024-20145
Redhat
No data.