In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00364733; Issue ID: MSV-1331.
History

Fri, 25 Apr 2025 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek
Mediatek mt6890
Mediatek mt6990
Mediatek mt7622
Mediatek software Development Kit
Openwrt
Openwrt openwrt
CPEs cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7622:-:*:*:*:*:*:*:*
cpe:2.3:o:openwrt:openwrt:19.07.0:-:*:*:*:*:*:*
cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:*
cpe:2.3:o:openwrt:openwrt:23.05:*:*:*:*:*:*:*
Vendors & Products Mediatek
Mediatek mt6890
Mediatek mt6990
Mediatek mt7622
Mediatek software Development Kit
Openwrt
Openwrt openwrt

Tue, 29 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.6, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published: 2024-06-03T02:04:51.932Z

Updated: 2024-10-29T20:56:19.598Z

Reserved: 2023-11-02T13:35:35.171Z

Link: CVE-2024-20071

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:38.876Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-03T02:15:09.220

Modified: 2025-04-25T18:38:10.847

Link: CVE-2024-20071

cve-icon Redhat

No data.