CVE-2024-20118
MEDIUMDescription
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09062392; Issue ID: MSV-1621.
Is your site exposed to CVE-2024-20118?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| android | |
| android | |
| android | |
| android | |
| mediatek | mt6739 |
| mediatek | mt6761 |
| mediatek | mt6765 |
| mediatek | mt6768 |
| mediatek | mt6779 |
| mediatek | mt6781 |
| mediatek | mt6785 |
| mediatek | mt6789 |
| mediatek | mt6833 |
| mediatek | mt6835 |
| mediatek | mt6853 |
| mediatek | mt6855 |
| mediatek | mt6873 |
| mediatek | mt6877 |
| mediatek | mt6883 |
| mediatek | mt6885 |
| mediatek | mt6889 |
| mediatek | mt6893 |
| mediatek | mt8676 |
| mediatek | mt8792 |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-20118? +
How severe is CVE-2024-20118? +
What products are affected by CVE-2024-20118? +
How do I check if I'm vulnerable to CVE-2024-20118? +
Related Vulnerabilities
OpenSlide is a C library for reading whole slide image files. From 3.4.1 until 4.0.1, OpenSlide's parse_level0_xml() processing in src/openslide-vendor-ventana.c …
llama.cpp provides LLM inference in C/C++. The unsafe `data` pointer member in the `rpc_tensor` structure can cause arbitrary address writing. …
remotion-dev remotion v4.0.409 was discovered to contain an arbitrary file write vulnerability.
vLLM is an inference and serving engine for large language models (LLMs). From versions 0.10.2 to before 0.11.1, a memory …
In WibuKey for Windows before version 6.71, an untrusted pointer dereference in the WibuKey2_64.sys kernel driver for 64-bit Windows allows …
A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C …