First published: Mon Jun 03 2024(Updated: )
In modem, there is a possible out of bounds write due to improper input invalidation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01267285; Issue ID: MSV-1462.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
All of | ||
Any of | ||
MediaTek NR16 | ||
MediaTek NR17 | ||
Any of | ||
MediaTek MT6813 | ||
MediaTek MT6815 | ||
MediaTek MT6835 | ||
MediaTek MT6878 | ||
MediaTek MT6897 | ||
MediaTek MT6899 | ||
MediaTek MT6986 | ||
MediaTek MT6986D | ||
MediaTek MT6991 | ||
MediaTek MT8792 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-20067 has a severity rating of high due to the potential for remote denial of service.
To fix CVE-2024-20067, ensure that you apply the latest security patches provided by your device manufacturer.
CVE-2024-20067 primarily affects Google Android devices with specific versions vulnerable to this issue.
No, CVE-2024-20067 can be exploited remotely without any user interaction.
CVE-2024-20067 is classified as an out of bounds write vulnerability caused by improper input invalidation.