Lucene search

K
vulnrichmentMediaTekVULNRICHMENT:CVE-2024-20037
HistoryMar 04, 2024 - 2:43 a.m.

CVE-2024-20037

2024-03-0402:43:53
MediaTek
github.com
write-what-where
bounds check
local escalation

AI Score

7.1

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

total

In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08495937; Issue ID: ALPS08495937.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6739:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6739",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6761",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6765",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6768",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6779:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6779",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6781",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6785",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6789",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6833",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6835",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6853",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6855",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6873",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6877",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6879",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6883:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6883",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6885",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6886",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6889:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6889",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6893",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6895",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6897",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6983",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6985",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6989",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8168",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8188",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8195:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8195",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8673",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8675:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8675",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*",
      "cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*",
      "cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*"
    ],
    "vendor": "google",
    "product": "android",
    "versions": [
      {
        "status": "affected",
        "version": "12.0"
      },
      {
        "status": "affected",
        "version": "13.0"
      },
      {
        "status": "affected",
        "version": "14.0"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

7.1

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

total

Related for VULNRICHMENT:CVE-2024-20037