Possible Out-of-Bounds Read Vulnerability in vdec System
CVE-2024-20123

Currently unrated

Key Information:

Vendor
MediaTek
Vendor
CVE Published:
4 November 2024

Summary

An out of bounds read vulnerability has been identified in the MediaTek vdec, stemming from improper structure design. This flaw may allow local information disclosure when exploited. Importantly, no user interaction is required for this potential exploitation, as it operates with system execution privileges. It is crucial for affected users to apply the necessary patches, specifically Patch ID: ALPS09008925, to mitigate this security risk and protect sensitive information.

Affected Version(s)

MT6761, MT6765, MT6768, MT6779, MT6785, MT8766, MT8768, MT8789 Android 12.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.