4.9

CVE-2024-20102

In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08998892; Issue ID: MSV-1601.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GoogleAndroid Version13.0
   MediatekMt3605 Version-
   MediatekMt6985 Version-
   MediatekMt6989 Version-
   MediatekMt6990 Version-
   MediatekMt7927 Version-
   MediatekMt8678 Version-
   MediatekMt8796 Version-
   MediatekMt8893 Version-
GoogleAndroid Version14.0
   MediatekMt3605 Version-
   MediatekMt6985 Version-
   MediatekMt6989 Version-
   MediatekMt6990 Version-
   MediatekMt7927 Version-
   MediatekMt8678 Version-
   MediatekMt8796 Version-
   MediatekMt8893 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.34
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.9 1.2 3.6
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
134c704f-9b21-4f2e-91b3-4a467353bcc0 4.9 1.2 3.6
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.