In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08997492; Issue ID: MSV-1625.
                
            Metrics
Affected Vendors & Products
References
        History
                    Fri, 25 Apr 2025 19:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Linuxfoundation Linuxfoundation yocto | |
| CPEs | cpe:2.3:a:linuxfoundation:yocto:4.0:*:*:*:*:*:*:* | |
| Vendors & Products | Linuxfoundation Linuxfoundation yocto | 
Mon, 07 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Google Google android Mediatek Mediatek mt6768 Mediatek mt6833 Mediatek mt6853 Mediatek mt6877 Mediatek mt6893 Mediatek mt8532 | |
| CPEs | cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8532:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* | |
| Vendors & Products | Google Google android Mediatek Mediatek mt6768 Mediatek mt6833 Mediatek mt6853 Mediatek mt6877 Mediatek mt6893 Mediatek mt8532 | |
| Metrics | cvssV3_1 
 
 | 
Mon, 07 Oct 2024 02:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08997492; Issue ID: MSV-1625. | |
| Weaknesses | CWE-787 | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: MediaTek
Published: 2024-10-07T02:35:26.589Z
Updated: 2024-10-07T13:28:06.163Z
Reserved: 2023-11-02T13:35:35.175Z
Link: CVE-2024-20099
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-10-07T13:25:28.455Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-10-07T03:15:03.200
Modified: 2025-04-25T18:37:06.520
Link: CVE-2024-20099
 Redhat
                        Redhat
                    No data.