CVE-2024-20065

In telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08698617; Issue ID: MSV-1394.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
OR cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:*

History

25 Apr 2025, 18:39

Type Values Removed Values Added
References () https://corp.mediatek.com/product-security-bulletin/June-2024 - () https://corp.mediatek.com/product-security-bulletin/June-2024 - Vendor Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6768:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:*
First Time Mediatek mt6985
Mediatek mt6885
Google
Mediatek mt6989
Mediatek mt6877
Mediatek mt6879
Mediatek mt6893
Mediatek mt6983
Google android
Mediatek
Mediatek mt6781
Mediatek mt6855
Mediatek mt6853
Mediatek mt6886
Mediatek mt6835
Mediatek mt6768

21 Nov 2024, 08:51

Type Values Removed Values Added
References () https://corp.mediatek.com/product-security-bulletin/June-2024 - () https://corp.mediatek.com/product-security-bulletin/June-2024 -

04 Nov 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.0

03 Jun 2024, 14:46

Type Values Removed Values Added
Summary
  • (es) En telefonía existe una posible divulgación de información debido a la falta de una verificación de permiso. Esto podría dar lugar a la divulgación de información local sin necesidad de privilegios de ejecución adicionales. La interacción del usuario no es necesaria para la explotación. ID de parche: ALPS08698617; ID del problema: MSV-1394.

03 Jun 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-03 02:15

Updated : 2025-04-25 18:39


NVD link : CVE-2024-20065

Mitre link : CVE-2024-20065

CVE.ORG link : CVE-2024-20065


JSON object : View

Products Affected

mediatek

  • mt6989
  • mt6879
  • mt6885
  • mt6985
  • mt6855
  • mt6877
  • mt6781
  • mt6835
  • mt6768
  • mt6983
  • mt6886
  • mt6893
  • mt6853

google

  • android
CWE
CWE-284

Improper Access Control

NVD-CWE-noinfo