CVE-2024-20086: High severity android vulnerability
In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08932916; Issue ID: MSV-1551.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20086?
CVE-2024-20086 is a vulnerability that has been classified as high severity due to its potential for local escalation of privilege.
How do I fix CVE-2024-20086?
To fix CVE-2024-20086, it is essential to apply the patch identified as ALPS08932916 as soon as possible.
What are the potential consequences of exploiting CVE-2024-20086?
Exploiting CVE-2024-20086 could lead to a local escalation of privileges, allowing an attacker to execute system-level commands.
Is user interaction required to exploit CVE-2024-20086?
No, user interaction is not required for the exploitation of CVE-2024-20086.
Which software versions are affected by CVE-2024-20086?
CVE-2024-20086 affects Google Android version 12.0 and is associated with various MediaTek chipsets.