VDB

CVE-2024-20015

CVE-2024-20015 PUBLISHED CVSS 7.800000190734863 HIGH

In telephony, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08441419; Issue ID: ALPS08441419.

EPSS 0.10% · 0.8th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.10%
0.8th percentile

Affected Products

VendorProductVersions
mediatekmt6761android_12.0, android_12.0
mediatekmt8791tandroid_12.0, android_12.0
mediatekmt8768android_12.0, android_12.0
googleandroid12.0, 13.0, 13.0
mediatekmt8667android_12.0, *
mediatekmt6855android_12.0, android_12.0
mediatekmt6983android_12.0, android_12.0
mediatekmt6753android_12.0, android_12.0
mediatekmt6889android_12.0, android_12.0
mediatekmt8781android_12.0, android_12.0
mediatekmt8765android_12.0, android_12.0
mediatekmt6886android_12.0, android_12.0
mediatekmt8789*, android_12.0
mediatekmt8673android_12.0, android_12.0
mediatekmt6985*, android_12.0
mediatekmt6833android_12.0, android_12.0
mediatekmt6763android_12.0, android_12.0
mediatekmt6893android_12.0, android_12.0
mediatekmt6875android_12.0, android_12.0
mediatekmt8798android_12.0, android_12.0

…and 21 more

Timeline

  • Feb 5, 2024 CVE Published
  • Feb 5, 2024 PoC Published
  • Feb 8, 2024 EPSS Score
  • Feb 25, 2024 PoC Published
  • Mar 6, 2024 EPSS Score
  • Apr 3, 2024 EPSS Score
  • Apr 30, 2024 EPSS Score
  • May 27, 2024 EPSS Score
  • Jun 24, 2024 EPSS Score
  • Jul 22, 2024 EPSS Score
  • Aug 18, 2024 EPSS Score
  • Sep 14, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›