VDB

CVE-2024-20049

CVE-2024-20049 PUBLISHED CVSS 6.900000095367432 MEDIUM

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541765; Issue ID: ALPS08541765.

EPSS 0.10% · 1.1th percentile

Risk Scores

CVSS 4.0
6.900000095367432
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
EPSS Score
0.10%
1.1th percentile

Affected Products

VendorProductVersions
googleandroid12.0, 13.0, 12.0
linuxfoundationyocto3.3, 3.3
MediaTek, Inc.MT2713, MT2737, MT6781, MT6789, MT6835, MT6855, MT6879, MT6880, MT6886, MT6890, MT6895, MT6980, MT6983, MT6985, MT6989, MT6990, MT8167, MT8168, MT8173, MT8175, MT8188, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8390, MT8395, MT8666, MT8667, MT8673, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791, MT8791T, MT8796, MT8797, MT8798*, Android 12.0, 13.0 / OpenWrt 19.07, 21.02 / Yocto 3.3 / RDK-B 22Q3
openwrtopenwrt21.02.0, 21.02.0, 19.07.0
rdkcentralrdk-b*, *

Timeline

  • Apr 1, 2024 EPSS Score
  • Apr 1, 2024 CVE Published
  • Apr 26, 2024 EPSS Score
  • May 22, 2024 EPSS Score
  • Jun 16, 2024 EPSS Score
  • Jul 12, 2024 EPSS Score
  • Aug 6, 2024 EPSS Score
  • Sep 1, 2024 EPSS Score
  • Sep 26, 2024 EPSS Score
  • Oct 4, 2024 Coalition ESS Score
  • Oct 22, 2024 EPSS Score
  • Oct 30, 2024 Coalition ESS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›