CVE-2024-20148
06.01.2025, 04:15
In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00389045 / ALPS09136494; Issue ID: MSV-1796.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linuxfoundation | yocto | 3.3 |
| linuxfoundation | yocto | 4.0 |
| linuxfoundation | yocto | 5.0 |
| mediatek | software_development_kit | 𝑥 ≤ 2.4 |
| android | 13.0 | |
| android | 14.0 | |
| android | 15.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration