CVE-2024-20019

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
04/03/2024
Last modified:
05/05/2025

Description

In wlan driver, there is a possible memory leak due to improper input handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00351241; Issue ID: MSV-1173.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mediatek:software_package:*:*:*:*:*:*:*:* 2023.11.10 (including)
cpe:2.3:h:mediatek:mt7925:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7927:-:*:*:*:*:*:*:*