Possible System Crash Due to Missing Bounds Check
CVE-2024-20094

Currently unrated

Summary

A vulnerability in MediaTek modem products allows for a potential system crash stemming from a missing bounds check. This absence of necessary validation could be exploited remotely, resulting in a denial of service without the need for any user interaction or elevated privileges. The vulnerability has been documented with Patch ID: MOLY00843282 and Issue ID: MSV-1535, highlighting the importance of implementing mitigations to protect affected installations.

Affected Version(s)

MT2735, MT6833, MT6853, MT6855, MT6873, MT6875, MT6875T, MT6877, MT6880, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT8675, MT8771, MT8791, MT8791T, MT8797 Modem NR15

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.