Lucene search

K
vulnrichmentMediaTekVULNRICHMENT:CVE-2024-20056
HistoryMay 06, 2024 - 2:51 a.m.

CVE-2024-20056

2024-05-0602:51:47
CWE-20
MediaTek
github.com
4
preloader
escalation of privilege
local execution

AI Score

6.7

Confidence

High

SSVC

Exploitation

None

Automatable

No

Technical Impact

Total

In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528185; Issue ID: ALPS08528185.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6739:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6739",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6761",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6765",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6768",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6781",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6785",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6789",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6833",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6835",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6853",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6855",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6873",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6880:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6880",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6885",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6886",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6890",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6893",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6895",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6897",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6983",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6985",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6989",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8666:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8666",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8667:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8667",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8673",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8676:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8676",
    "versions": [
      {
        "status": "affected",
        "version": "android_12.0",
        "versionType": "custom",
        "lessThanOrEqual": "android_14.0"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

6.7

Confidence

High

SSVC

Exploitation

None

Automatable

No

Technical Impact

Total

Related for VULNRICHMENT:CVE-2024-20056