CVE-2024-20120
CVSS V2 None
CVSS V3 None
Description
In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08956986; Issue ID: MSV-1575.
Overview
- CVE ID
- CVE-2024-20120
- Assigner
- MediaTek
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-11-04T01:49:34.400Z
- Last Modified Date
- 2024-11-04T01:49:34.400Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://corp.mediatek.com/product-security-bulletin/November-2024 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-20120 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-20120 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-11-04 13:16:46 | Added to TrackCVE |