8.4

CVE-2024-20029

In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08477406; Issue ID: MSV-1010.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GoogleAndroid Version13.0
   MediatekMt6985 Version-
   MediatekMt6989 Version-
   MediatekMt8678 Version-
   MediatekMt8796 Version-
GoogleAndroid Version14.0
   MediatekMt6985 Version-
   MediatekMt6989 Version-
   MediatekMt8678 Version-
   MediatekMt8796 Version-
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.032
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 8.4 2.5 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.