Show plain JSON{"dataType": "CVE_RECORD", "dataVersion": "5.1", "cveMetadata": {"cveId": "CVE-2024-20021", "assignerOrgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374", "state": "PUBLISHED", "assignerShortName": "MediaTek", "dateReserved": "2023-11-02T13:35:35.151Z", "datePublished": "2024-05-06T02:52:01.865Z", "dateUpdated": "2024-08-01T21:52:31.733Z"}, "containers": {"cna": {"providerMetadata": {"orgId": "ee979b05-11f8-4f25-a7e0-a1fa9c190374", "shortName": "MediaTek", "dateUpdated": "2024-05-06T02:52:01.865Z"}, "descriptions": [{"lang": "en", "value": "In atf spm, there is a possible way to remap physical memory to virtual memory due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08584568; Issue ID: MSV-1249."}], "affected": [{"vendor": "MediaTek, Inc.", "product": "MT6768, MT6781, MT6785, MT6833, MT6853, MT6873, MT6877, MT6885, MT6893, MT8168, MT8183, MT8188, MT8188T, MT8195, MT8195Z, MT8321, MT8362A, MT8365, MT8385, MT8666, MT8666A, MT8666B, MT8667, MT8673, MT8675, MT8675, MT8676, MT8678, MT8765, MT8766, MT8766Z, MT8768, MT8768A, MT8768B, MT8768T, MT8768Z, MT8781, MT8781, MT8786, MT8788, MT8788T, MT8788, MT8788X, MT8788Z, MT8792, MT8795T, MT8796, MT8798", "versions": [{"version": "Android 12.0, 13.0, 14.0", "status": "affected"}]}], "references": [{"url": "https://corp.mediatek.com/product-security-bulletin/May-2024"}], "problemTypes": [{"descriptions": [{"type": "CWE", "lang": "en", "cweId": "CWE-269", "description": "CWE-269 Improper Privilege Management"}]}]}, "adp": [{"title": "CISA ADP Vulnrichment", "metrics": [{"cvssV3_1": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.7, "attackVector": "LOCAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}}, {"other": {"type": "ssvc", "content": {"id": "CVE-2024-20021", "role": "CISA Coordinator", "options": [{"Exploitation": "none"}, {"Automatable": "no"}, {"Technical Impact": "total"}], "version": "2.0.3", "timestamp": "2024-05-10T15:52:43.868259Z"}}}], "affected": [{"cpes": ["cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6853", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6873", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6885", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6893", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8168:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8168", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8183:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8183", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8188:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8188", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8188t:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8188t", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8195:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8195", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8195z:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8195z", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8362a:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8362a", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8365:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8365", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8666:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8666", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8667:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8667", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8675:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8675", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8765:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8765", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8766:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8766", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8766z:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8766z", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8768a:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8768a", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8768b:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8768b", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8768z:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8768z", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8781", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8788:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8788", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8788t:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8788t", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8788z:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8788z", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8792:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8792", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8795t:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8795t", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8798", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:a:mediatek:mt6768:*:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6768", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6781", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6785", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6833", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt6877", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8321:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8321", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8666a:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8666a", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "git", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8673", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8768:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8768", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8768t:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8768t", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8786:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8786", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8788x:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8788x", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}, {"cpes": ["cpe:2.3:h:mediatek:mt8796:-:*:*:*:*:*:*:*"], "vendor": "mediatek", "product": "mt8796", "versions": [{"status": "affected", "version": "Android 12.0", "versionType": "custom", "lessThanOrEqual": "Android 14.0"}], "defaultStatus": "unknown"}], "providerMetadata": {"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2024-06-04T17:40:13.269Z"}}, {"providerMetadata": {"orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-01T21:52:31.733Z"}, "title": "CVE Program Container", "references": [{"url": "https://corp.mediatek.com/product-security-bulletin/May-2024", "tags": ["x_transferred"]}]}]}}