In imgsys, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation Patch ID: ALPS08518692; Issue ID: MSV-1012.
References
| Link | Resource |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/April-2024 | Vendor Advisory |
| https://corp.mediatek.com/product-security-bulletin/April-2024 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2024-04-01 03:15
Updated : 2025-04-23 13:46
NVD link : CVE-2024-20055
Mitre link : CVE-2024-20055
CVE.ORG link : CVE-2024-20055
JSON object : View
Products Affected
mediatek
- mt8781
- mt8795t
- mt8195
- mt8673
- mt8390
- iot_yocto
- mt8365
- mt8798
- mt8395
- mt2713
- mt8188
- mt8175
- mt8696
- mt8871
- mt8168
- mt8173
- mt8370
linuxfoundation
- yocto
- android
CWE
CWE-125
Out-of-bounds Read
