Out of Bounds Write Vulnerability in MediaTek Modem
CVE-2024-20154
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 6 January 2025
What is CVE-2024-20154?
CVE-2024-20154 is a significant vulnerability affecting MediaTek Modem technology, which is widely used to facilitate mobile communications. This vulnerability arises from an out-of-bounds write issue due to a lack of adequate bounds checking. If exploited, it could allow malicious actors to execute remote code on affected devices connected to rogue base stations, presenting a serious security risk without requiring any user interaction. As a result, organizations relying on MediaTek Modems could face unauthorized control over their devices, leading to various adverse effects, including data loss and compromised system integrity.
Technical Details
The vulnerability involves a failure in the MediaTek Modem's code safety checks, enabling potential out-of-bounds writes. This oversight allows attackers who control a malicious base station to execute arbitrary code on connected user equipment (UE) without needing specific execution privileges or user intervention. The issues are identified under Patch ID: MOLY00720348 and Issue ID: MSV-2392, and pose critical challenges for mobile security.
Potential Impact of CVE-2024-20154
-
Remote Code Execution: Attackers can leverage this vulnerability to take control of devices remotely, potentially allowing them to manipulate device functions or harvest sensitive data.
-
Unauthorized Access to Network Resources: By exploiting this flaw, malicious actors might gain unauthorized access to networks, leading to additional breaches or information theft across connected systems.
-
Increased Attack Surface for Further Exploits: Successful exploitation could allow attackers to deploy additional malware or pivot to other systems within an organization, increasing the risk of broader cyber incidents.
Affected Version(s)
MT2735, MT6767, MT6768, MT6769, MT6769K, MT6769S, MT6769T, MT6769Z, MT6779, MT6781, MT6783, MT6785, MT6785T, MT6785U, MT6789, MT6833P, MT6853, MT6853T, MT6855, MT6855T, MT6873, MT6875, MT6875T, MT6877, MT6877T, MT6877TT, MT6880, MT6880T, MT6880U, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT8666, MT8673, MT8675, MT8765, MT8766, MT8768, MT8771, MT8781, MT8786, MT8788, MT8788E, MT8789, MT8791T, MT8795T, MT8797, MT8798 Modem LR12A, LR13, NR15, NR16.R1.MP, NR16.R1.MP1MP2.MP, NR16.R2.MP
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved