CVE-2024-20118

EUVD-2024-17833
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09062392; Issue ID: MSV-1621.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
Affected Products (NVD)
VendorProductVersion
googleandroid
12.0
googleandroid
13.0
googleandroid
14.0
googleandroid
15.0
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
mediatekmt6739
𝑥
≤ *
ADP
mediatekmt6761
𝑥
≤ *
ADP
mediatekmt6765
𝑥
≤ *
ADP
mediatekmt6768
𝑥
≤ *
ADP
mediatekmt6779
𝑥
≤ *
ADP
mediatekmt6781
𝑥
≤ *
ADP
mediatekmt6785
𝑥
≤ *
ADP
mediatekmt6789
𝑥
≤ *
ADP
mediatekmt6833
𝑥
≤ *
ADP
mediatekmt6835
𝑥
≤ *
ADP
mediatekmt6853
𝑥
≤ *
ADP
mediatekmt6855
𝑥
≤ *
ADP
mediatekmt6873
𝑥
≤ *
ADP
mediatekmt6877
𝑥
≤ *
ADP
mediatekmt6883
𝑥
≤ *
ADP
mediatekmt6885
𝑥
≤ *
ADP
mediatekmt6889
𝑥
≤ *
ADP
mediatekmt6893
𝑥
≤ *
ADP
mediatekmt8676
𝑥
≤ *
ADP
mediatekmt8792
𝑥
≤ *
ADP