CVE-2024-20083: Critical severity android vulnerability
In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08810810 / ALPS08805789; Issue ID: MSV-1502.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20083?
The severity of CVE-2024-20083 is considered critical due to its potential for local privilege escalation.
How do I fix CVE-2024-20083?
To fix CVE-2024-20083, apply the available patches identified by Patch ID ALPS08810810 or ALPS08805789.
What types of devices are affected by CVE-2024-20083?
CVE-2024-20083 affects devices running Android 12.0, particularly those utilizing specific MediaTek chipsets.
Is user interaction required to exploit CVE-2024-20083?
No, user interaction is not needed for exploiting CVE-2024-20083.
What kind of attack does CVE-2024-20083 facilitate?
CVE-2024-20083 potentially facilitates local escalation of privileges, allowing attackers to execute actions with system-level permissions.