Vulnerability

CVE-2024-20054

Component: POSITION
In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

N/A

Severity (Android)

N/A

Chipsets

30

Devices

579

Affected Hardware

NameAlso known asManufacturer
MT6762
Helio P22
MediaTek
MT6765
Helio P35
MediaTek
MT6833
Dimensity 6020
Dimensity 700
MediaTek
MT6873
Dimensity 800
MediaTek
MT6833
Dimensity 6080
Dimensity 810
MediaTek
MT6875
Dimensity 820
MediaTek
MT6877
Dimensity 900
MediaTek
MT6877
Dimensity 920
MediaTek
MT6855
Dimensity 930
MediaTek
MT6889
Dimensity 1000
MediaTek
30 of 30 row(s) shown.

Rows per page

Page 1 of 3

Timeline

Introduced (est):
Apr 1, 2018
Reported:
Unknown
Advisory Published:
Apr 1, 2024
CVE Published:
Apr 1, 2024
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter