Vulnerabilities > CVE-2024-20007 - Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
In mp3 decoder, there is a possible out of bounds write due to a race condition. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS08441369; Issue ID: ALPS08441369.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 3 | |
Hardware | Mediatek
| 33 |