First published: Mon Feb 05 2024(Updated: )
In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08358560; Issue ID: ALPS08358560.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
All of | ||
Any of | ||
=11.0 | ||
=12.0 | ||
=13.0 | ||
Any of | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-20010 is classified as a critical vulnerability that leads to local escalation of privilege.
To fix CVE-2024-20010, ensure that you apply the latest security patch identified by Patch ID: ALPS08358560.
No, user interaction is not needed for the exploitation of CVE-2024-20010.
CVE-2024-20010 affects Google Android versions 11.0, 12.0, and 13.0.
CVE-2024-20010 is a type confusion vulnerability that may lead to privilege escalation.