VDB
CVE-2024-20015
CVE-2024-20015
PUBLISHED
CVSS 7.800000190734863 HIGH
In telephony, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08441419; Issue ID: ALPS08441419.
EPSS 0.10% · 0.8th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.10%
0.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| mediatek | mt6761 | android_12.0, android_12.0 |
| mediatek | mt8791t | android_12.0, android_12.0 |
| mediatek | mt8768 | android_12.0, android_12.0 |
| android | 12.0, 13.0, 13.0 | |
| mediatek | mt8667 | android_12.0, * |
| mediatek | mt6855 | android_12.0, android_12.0 |
| mediatek | mt6983 | android_12.0, android_12.0 |
| mediatek | mt6753 | android_12.0, android_12.0 |
| mediatek | mt6889 | android_12.0, android_12.0 |
| mediatek | mt8781 | android_12.0, android_12.0 |
| mediatek | mt8765 | android_12.0, android_12.0 |
| mediatek | mt6886 | android_12.0, android_12.0 |
| mediatek | mt8789 | *, android_12.0 |
| mediatek | mt8673 | android_12.0, android_12.0 |
| mediatek | mt6985 | *, android_12.0 |
| mediatek | mt6833 | android_12.0, android_12.0 |
| mediatek | mt6763 | android_12.0, android_12.0 |
| mediatek | mt6893 | android_12.0, android_12.0 |
| mediatek | mt6875 | android_12.0, android_12.0 |
| mediatek | mt8798 | android_12.0, android_12.0 |
…and 21 more
Timeline
- Feb 5, 2024 CVE Published
- Feb 5, 2024 PoC Published
- Feb 8, 2024 EPSS Score
- Feb 25, 2024 PoC Published
- Mar 6, 2024 EPSS Score
- Apr 3, 2024 EPSS Score
- Apr 30, 2024 EPSS Score
- May 27, 2024 EPSS Score
- Jun 24, 2024 EPSS Score
- Jul 22, 2024 EPSS Score
- Aug 18, 2024 EPSS Score
- Sep 14, 2024 EPSS Score