In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08960505; Issue ID: MSV-1590.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 24 Apr 2025 15:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* | 
Mon, 04 Nov 2024 11:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Google Google android Mediatek Mediatek mt6739 Mediatek mt6761 Mediatek mt6765 Mediatek mt6768 Mediatek mt6779 Mediatek mt6785 Mediatek mt6853 Mediatek mt6873 Mediatek mt6885 Mediatek mt8666 Mediatek mt8667 Mediatek mt8673 Mediatek mt8678 | |
| CPEs | cpe:2.3:h:mediatek:mt6739:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6779:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8666:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8667:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:-:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* | |
| Vendors & Products | Google Google android Mediatek Mediatek mt6739 Mediatek mt6761 Mediatek mt6765 Mediatek mt6768 Mediatek mt6779 Mediatek mt6785 Mediatek mt6853 Mediatek mt6873 Mediatek mt6885 Mediatek mt8666 Mediatek mt8667 Mediatek mt8673 Mediatek mt8678 | |
| Metrics | cvssV3_1 
 
 | 
Mon, 04 Nov 2024 02:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08960505; Issue ID: MSV-1590. | |
| Weaknesses | CWE-843 | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: MediaTek
Published: 2024-11-04T01:48:40.379Z
Updated: 2024-11-04T10:56:14.353Z
Reserved: 2023-11-02T13:35:35.176Z
Link: CVE-2024-20106
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-11-04T10:55:26.008Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-11-04T02:15:16.070
Modified: 2025-04-24T15:05:17.683
Link: CVE-2024-20106
 Redhat
                        Redhat
                    No data.