Home Android 14.0, 15.0 / SDK release 3.5 and before / Yocto 3.3, 4.0, 5.0
affected
Description
In wlan STA, there is a possible way to trick a client to connect to an AP with spoofed SSID. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08990446 / ALPS09057442; Issue ID: MSV-1598.
Problem types
CWE-304 Missing Critical Step in Authentication
Product status
References
corp.mediatek.com/product-security-bulletin/January-2025
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.