CVE-2024-20083

CVE-2024-20083

Vendor Mediatek, Inc.
Product MT6765, MT6768, MT6779, MT6785, MT8321, MT8385, MT8666, MT8667, MT8755, MT8765, MT8766, MT8768, MT8771, MT8775, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8792, MT8795T, MT8796, MT8797, MT8798
Weakness CWE-787
Published August 14, 2024
Last update August 21, 2024

CVSS base score

What the vulnerability does

01Description

In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08810810 / ALPS08805789; Issue ID: MSV-1502.

Key dates

02Disclosure timeline

August 14, 2024 CVE published
August 21, 2024 Record updated