CVE-2024-20148

Published Jan 6, 2025

Last updated 2 months ago

Overview

Description
In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00389045 / ALPS09136494; Issue ID: MSV-1796.
Source
security@mediatek.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

security@mediatek.com
CWE-787

Social media

Hype score
Not currently trending
  1. CVE-2024-20148 (CVSS:9.8, CRITICAL) is Awaiting Analysis. In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (pro..https://t.co/WSk8cIcwJV #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    11 Jan 2025

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2024-20148 (CVSS:9.8, CRITICAL) is Awaiting Analysis. In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (pro..https://t.co/WSk8cIcwJV #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    10 Jan 2025

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2024-20148 01/06/2025 04:15:07 AM BaseSeverity: CRITICAL In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution ... https://t.co/VA5b2bkFsi

    @CVETracker

    6 Jan 2025

    25 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2024-20148 Remote Code Execution via Input Validation Flaw in wlan S... https://t.co/QfCsASsUFi Don't wait vulnerability scanning results: https://t.co/oh1APvMMnd

    @VulmonFeeds

    6 Jan 2025

    51 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2024-20148 In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution with no additio… https://t.co/o1zmeIl4OL

    @CVEnew

    6 Jan 2025

    456 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes