Vulnerability

CVE-2023-20819

Component: CELLULAR
Location: FIRMWARE
In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: MOLY01068234; Issue ID: ALPS08010003.

Impact

Severity (Manufact.)

HIGH

Severity (NIST)

9.8

Severity (Android)

N/A

Chipsets

166

Devices

2222

Affected Hardware

NameAlso known asManufacturer
MT6570
MediaTek
MT6580
MediaTek
MT6595M
MediaTek
MT6595
MediaTek
MT6735P
MediaTek
MT6735M
MediaTek
MT6735
MediaTek
MT6737
MediaTek
MT6737T
MediaTek
MT6732M
MediaTek
166 of 166 row(s) shown.

Rows per page

Page 1 of 17

Timeline

Introduced (est):
Jan 1, 2014
Reported:
Unknown
Advisory Published:
Oct 2, 2023
CVE Published:
Oct 2, 2023
Android Patch Level:
Oct 2023
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter