CVE-2024-20152

CVE-2024-20152

Vendor Mediatek, Inc.
Product MT2737, MT3603, MT6835, MT6878, MT6886, MT6897, MT6990, MT7902, MT7920, MT7922, MT8518S, MT8532, MT8755, MT8766, MT8768, MT8775, MT8781, MT8796, MT8798, MT8893
Weakness CWE-617
Published January 6, 2025
Last update January 6, 2025

CVSS base score

What the vulnerability does

01Description

In wlan STA driver, there is a possible reachable assertion due to improper exception handling. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00389047 / ALPS09136505; Issue ID: MSV-1798.

Key dates

02Disclosure timeline

January 6, 2025 CVE published
January 6, 2025 Record updated