cve/2024/CVE-2024-20107.md
2025-09-29 21:09:30 +02:00

18 lines
1.1 KiB
Markdown

### [CVE-2024-20107](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-20107)
![](https://img.shields.io/static/v1?label=Product&message=MT6781%2C%20MT6789%2C%20MT6835%2C%20MT6855%2C%20MT6878%2C%20MT6879%2C%20MT6880%2C%20MT6886%2C%20MT6890%2C%20MT6895%2C%20MT6897%2C%20MT6980%2C%20MT6983%2C%20MT6985%2C%20MT6989%2C%20MT6990%2C%20MT8188%2C%20MT8370%2C%20MT8390%2C%20MT8676&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=Android%2012.0%2C%2013.0%2C%2014.0%2C%2015.0%20%2F%20openWRT%2019.07%2C%2021.02%2C%2023.05%20%2F%20Yocto%204.0%20%2F%20RDK-B%2022Q3%2C%2024Q1%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-125%20Out-of-bounds%20Read&color=brightgreen)
### Description
In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09124360; Issue ID: MSV-1823.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/Resery/Resery