CVE-2024-20149

HIGH EPSS 48.9%
Published Jan 6, 20251y ago · Modified Jun 17, 20261w ago
7.5 CVSS 3.1
High
Find Similar
Published Jan 6, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01231341 / MOLY01263331 / MOLY01233835; Issue ID: MSV-2165.

CVSS Details

Base Score
7.5
Exploitability
3.9
Impact
3.6
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
48.9% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

Weaknesses 1

CWE-1284

Affected Products 81

VendorProductVersionRange
mediateklr12*any
mediateklr13*any
mediateknr15*any
mediateknr16*any
mediateknr17.r1*any
mediateknr17.r2*any
mediatekmt2735*any
mediatekmt2737*any
mediatekmt6767*any
mediatekmt6768*any
mediatekmt6769*any
mediatekmt6769k*any
mediatekmt6769s*any
mediatekmt6769t*any
mediatekmt6769z*any
mediatekmt6779*any
mediatekmt6781*any
mediatekmt6783*any
mediatekmt6785*any
mediatekmt6785t*any
mediatekmt6785u*any
mediatekmt6789*any
mediatekmt6833p*any
mediatekmt6835*any
mediatekmt6835t*any
mediatekmt6853*any
mediatekmt6853t*any
mediatekmt6855*any
mediatekmt6855t*any
mediatekmt6873*any
mediatekmt6875*any
mediatekmt6875t*any
mediatekmt6877*any
mediatekmt6877t*any
mediatekmt6877tt*any
mediatekmt6878*any
mediatekmt6878m*any
mediatekmt6879*any
mediatekmt6880*any
mediatekmt6880t*any
mediatekmt6880u*any
mediatekmt6883*any
mediatekmt6885*any
mediatekmt6886*any
mediatekmt6889*any
mediatekmt6890*any
mediatekmt6891*any
mediatekmt6893*any
mediatekmt6895*any
mediatekmt6895tt*any
mediatekmt6896*any
mediatekmt6897*any
mediatekmt6899*any
mediatekmt6980*any
mediatekmt6980d*any
mediatekmt6983t*any
mediatekmt6985*any
mediatekmt6985t*any
mediatekmt6989*any
mediatekmt6989t*any
mediatekmt6990*any
mediatekmt6991*any
mediatekmt8666*any
mediatekmt8673*any
mediatekmt8675*any
mediatekmt8676*any
mediatekmt8678*any
mediatekmt8765*any
mediatekmt8766*any
mediatekmt8768*any
mediatekmt8771*any
mediatekmt8781*any
mediatekmt8786*any
mediatekmt8788*any
mediatekmt8788e*any
mediatekmt8789*any
mediatekmt8791t*any
mediatekmt8795t*any
mediatekmt8797*any
mediatekmt8798*any
mediatekmt8863*any

References 1

  • corp.mediatek.com https://corp.mediatek.com/product-security-bulletin/January-2025
    Vendor Advisory

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.