First published: Mon Jun 03 2024(Updated: )
In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is no needed for exploitation. Patch ID: MOLY01267281; Issue ID: MSV-1477.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
All of | ||
Any of | ||
mediatek nr16 | ||
MediaTek NR17 | ||
Any of | ||
MediaTek MT6298 | ||
MediaTek MT6813 | ||
MediaTek MT6815 | ||
MediaTek MT6835 | ||
MediaTek MT6878 | ||
MediaTek MT6879 | ||
MediaTek MT6895 | ||
MediaTek MT6895T | ||
MediaTek MT6896 | ||
MediaTek MT6897 | ||
Mediatek Mt6899 | ||
MediaTek MT6980D | ||
MediaTek MT6980D | ||
MediaTek MT6983 | ||
Mediatek MT6986 | ||
MediaTek MT6986D | ||
MediaTek MT6990 | ||
Mediatek MT6991 | ||
MediaTek MT8673 | ||
MediaTek MT8792 | ||
MediaTek MT8798 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-20066 is significant due to its potential to cause remote denial of service.
To fix CVE-2024-20066, apply the patch identified by MOLY01267281 to the affected devices.
CVE-2024-20066 primarily affects devices running certain versions of Google Android and MediaTek NR16 and NR17.
No, user interaction is not required to exploit CVE-2024-20066.
CVE-2024-20066 is an out of bounds write vulnerability that can lead to remote denial of service.