Search

Find a vulnerability

Search criteria

    6 vulnerabilities found for mt6789 by mediatek

    CVE-2025-20658 (GCVE-0-2025-20658)

    Vulnerability from nvd – Published: 2025-04-07 03:14 – Updated: 2025-04-07 18:22
    VLAI
    Summary
    In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09474894; Issue ID: MSV-2597.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-07 14:19 UTC
    CWE
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "HIGH",
                  "attackVector": "PHYSICAL",
                  "availabilityImpact": "LOW",
                  "baseScore": 6,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-20658",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-07T14:19:21.779349Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-07T18:22:01.666Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT2718, MT6781, MT6789, MT6835, MT6855, MT6878, MT6879, MT6886, MT6895, MT6897, MT6983, MT6985, MT6989, MT8196, MT8673, MT8676, MT8678, MT8781",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 12.0, 13.0, 14.0, 15.0"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09474894; Issue ID: MSV-2597."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-787",
                  "description": "CWE-787 Out-of-bounds Write",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-04-07T03:14:52.452Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2025"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2025-20658",
        "datePublished": "2025-04-07T03:14:52.452Z",
        "dateReserved": "2024-11-01T01:21:50.367Z",
        "dateUpdated": "2025-04-07T18:22:01.666Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2025-20656 (GCVE-0-2025-20656)

    Vulnerability from nvd – Published: 2025-04-07 03:14 – Updated: 2025-04-07 13:57
    VLAI
    Summary
    In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09625423; Issue ID: MSV-3033.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-07 13:57 UTC
    CWE
    Impacted products
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "PHYSICAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.8,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-20656",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-07T13:57:10.925878Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-07T13:57:13.648Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT6781, MT6789, MT6835, MT6855, MT6878, MT6879, MT6886, MT6895, MT6897, MT6983, MT6985, MT6989, MT6990, MT8196, MT8370, MT8390",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 12.0, 13.0, 14.0, 15.0 / openWRT 21.02, 23.05 / Yocto 4.0 / RDK-B 24Q1"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09625423; Issue ID: MSV-3033."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-787",
                  "description": "CWE-787 Out-of-bounds Write",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-04-07T03:14:49.018Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2025"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2025-20656",
        "datePublished": "2025-04-07T03:14:49.018Z",
        "dateReserved": "2024-11-01T01:21:50.367Z",
        "dateUpdated": "2025-04-07T13:57:13.648Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-20054 (GCVE-0-2024-20054)

    Vulnerability from nvd – Published: 2024-04-01 02:35 – Updated: 2024-08-01 21:52
    VLAI
    Summary
    In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-05-21 20:26 UTC
    CWE
    • Elevation of Privilege
    • CWE-787 - Out-of-bounds Write
    Impacted products
    Vendor Product Version
    MediaTek, Inc. MT2735, MT2737, MT6762, MT6765, MT6769, MT6833, MT6835, MT6853, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT6895, MT6983, MT6985, MT6989, MT6990, MT8168, MT8173, MT8195, MT8321, MT8385, MT8390, MT8666, MT8667, MT8673, MT8676, MT8678, MT8755, MT8765, MT8766, MT8768, MT8775, MT8781, MT8786, MT8788, MT8791T, MT8792, MT8796, MT8893 Affected: Android 13.0, 14.0 / OpenWrt 19.07, 21.02 / Yocto 2.6, 3.3 / RDKB 2022Q3
    Create a notification for this product.
    mediatek mt6761 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6765 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6768 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6789 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6833 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6855 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6895 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8167 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8167:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8168 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8188 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8321 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8765 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8766 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8766:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8768 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8768:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8781 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8786 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8786:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8788 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8789 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8789:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8791t Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8797 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8798 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6761",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6765",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6768",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6789",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6833",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6855",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6895",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8167:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8167",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8168",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8188",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8321",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8765",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8766:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8766",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8768:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8768",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8781",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8786:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8786",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8788",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8789:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8789",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8791t",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8797",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8798",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "HIGH",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.6,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "HIGH",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-20054",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-05-21T20:26:30.833411Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-787",
                    "description": "CWE-787 Out-of-bounds Write",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-04T17:40:32.140Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-01T21:52:31.766Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://corp.mediatek.com/product-security-bulletin/April-2024"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT2735, MT2737, MT6762, MT6765, MT6769, MT6833, MT6835, MT6853, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT6895, MT6983, MT6985, MT6989, MT6990, MT8168, MT8173, MT8195, MT8321, MT8385, MT8390, MT8666, MT8667, MT8673, MT8676, MT8678, MT8755, MT8765, MT8766, MT8768, MT8775, MT8781, MT8786, MT8788, MT8791T, MT8792, MT8796, MT8893",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 13.0, 14.0 / OpenWrt 19.07, 21.02 / Yocto 2.6, 3.3 / RDKB 2022Q3"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "Elevation of Privilege",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-04-01T02:35:19.821Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2024"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2024-20054",
        "datePublished": "2024-04-01T02:35:19.821Z",
        "dateReserved": "2023-11-02T13:35:35.160Z",
        "dateUpdated": "2024-08-01T21:52:31.766Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2025-20658 (GCVE-0-2025-20658)

    Vulnerability from cvelistv5 – Published: 2025-04-07 03:14 – Updated: 2025-04-07 18:22
    VLAI
    Summary
    In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09474894; Issue ID: MSV-2597.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-07 14:19 UTC
    CWE
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "HIGH",
                  "attackVector": "PHYSICAL",
                  "availabilityImpact": "LOW",
                  "baseScore": 6,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-20658",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-07T14:19:21.779349Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-07T18:22:01.666Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT2718, MT6781, MT6789, MT6835, MT6855, MT6878, MT6879, MT6886, MT6895, MT6897, MT6983, MT6985, MT6989, MT8196, MT8673, MT8676, MT8678, MT8781",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 12.0, 13.0, 14.0, 15.0"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09474894; Issue ID: MSV-2597."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-787",
                  "description": "CWE-787 Out-of-bounds Write",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-04-07T03:14:52.452Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2025"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2025-20658",
        "datePublished": "2025-04-07T03:14:52.452Z",
        "dateReserved": "2024-11-01T01:21:50.367Z",
        "dateUpdated": "2025-04-07T18:22:01.666Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2025-20656 (GCVE-0-2025-20656)

    Vulnerability from cvelistv5 – Published: 2025-04-07 03:14 – Updated: 2025-04-07 13:57
    VLAI
    Summary
    In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09625423; Issue ID: MSV-3033.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-07 13:57 UTC
    CWE
    Impacted products
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "PHYSICAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.8,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-20656",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-07T13:57:10.925878Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-07T13:57:13.648Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT6781, MT6789, MT6835, MT6855, MT6878, MT6879, MT6886, MT6895, MT6897, MT6983, MT6985, MT6989, MT6990, MT8196, MT8370, MT8390",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 12.0, 13.0, 14.0, 15.0 / openWRT 21.02, 23.05 / Yocto 4.0 / RDK-B 24Q1"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09625423; Issue ID: MSV-3033."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-787",
                  "description": "CWE-787 Out-of-bounds Write",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-04-07T03:14:49.018Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2025"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2025-20656",
        "datePublished": "2025-04-07T03:14:49.018Z",
        "dateReserved": "2024-11-01T01:21:50.367Z",
        "dateUpdated": "2025-04-07T13:57:13.648Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-20054 (GCVE-0-2024-20054)

    Vulnerability from cvelistv5 – Published: 2024-04-01 02:35 – Updated: 2024-08-01 21:52
    VLAI
    Summary
    In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-05-21 20:26 UTC
    CWE
    • Elevation of Privilege
    • CWE-787 - Out-of-bounds Write
    Impacted products
    Vendor Product Version
    MediaTek, Inc. MT2735, MT2737, MT6762, MT6765, MT6769, MT6833, MT6835, MT6853, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT6895, MT6983, MT6985, MT6989, MT6990, MT8168, MT8173, MT8195, MT8321, MT8385, MT8390, MT8666, MT8667, MT8673, MT8676, MT8678, MT8755, MT8765, MT8766, MT8768, MT8775, MT8781, MT8786, MT8788, MT8791T, MT8792, MT8796, MT8893 Affected: Android 13.0, 14.0 / OpenWrt 19.07, 21.02 / Yocto 2.6, 3.3 / RDKB 2022Q3
    Create a notification for this product.
    mediatek mt6761 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6765 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6768 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6789 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6833 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6855 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt6895 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8167 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8167:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8168 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8188 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8321 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8765 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8766 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8766:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8768 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8768:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8781 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8786 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8786:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8788 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8789 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8789:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8791t Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8797 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*
    Create a notification for this product.
    mediatek mt8798 Affected: android_13.0 , ≤ android_14.0 (custom)
        cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6761:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6761",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6765:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6765",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6768",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6789",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6833",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6855",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt6895",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8167:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8167",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8168",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8188",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8321",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8765",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8766:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8766",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8768:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8768",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8781",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8786:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8786",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8788",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8789:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8789",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8791t",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8797",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "mt8798",
                "vendor": "mediatek",
                "versions": [
                  {
                    "lessThanOrEqual": "android_14.0",
                    "status": "affected",
                    "version": "android_13.0",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "HIGH",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.6,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "HIGH",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-20054",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-05-21T20:26:30.833411Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-787",
                    "description": "CWE-787 Out-of-bounds Write",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-04T17:40:32.140Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-01T21:52:31.766Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://corp.mediatek.com/product-security-bulletin/April-2024"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "MT2735, MT2737, MT6762, MT6765, MT6769, MT6833, MT6835, MT6853, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT6895, MT6983, MT6985, MT6989, MT6990, MT8168, MT8173, MT8195, MT8321, MT8385, MT8390, MT8666, MT8667, MT8673, MT8676, MT8678, MT8755, MT8765, MT8766, MT8768, MT8775, MT8781, MT8786, MT8788, MT8791T, MT8792, MT8796, MT8893",
              "vendor": "MediaTek, Inc.",
              "versions": [
                {
                  "status": "affected",
                  "version": "Android 13.0, 14.0 / OpenWrt 19.07, 21.02 / Yocto 2.6, 3.3 / RDKB 2022Q3"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "Elevation of Privilege",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-04-01T02:35:19.821Z",
            "orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
            "shortName": "MediaTek"
          },
          "references": [
            {
              "url": "https://corp.mediatek.com/product-security-bulletin/April-2024"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374",
        "assignerShortName": "MediaTek",
        "cveId": "CVE-2024-20054",
        "datePublished": "2024-04-01T02:35:19.821Z",
        "dateReserved": "2023-11-02T13:35:35.160Z",
        "dateUpdated": "2024-08-01T21:52:31.766Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }