Home

Description

In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction may be also needed for exploitation Patch ID: MOLY01138425; Issue ID: MOLY01138425 (MSV-862).

PUBLISHED Reserved 2023-05-16 | Published 2023-11-06 | Updated 2024-09-05 | Assigner MediaTek

Problem types

Elevation of Privilege

Product status

Modem LR12A, NR15, NR16, VMOLYN, NR17
affected

References

corp.mediatek.com/product-security-bulletin/November-2023

cve.org (CVE-2023-32840)

nvd.nist.gov (CVE-2023-32840)

Download JSON