MediaTek rings in the new year with a parade of chipset vulns
ID: d71961bf-a77f-59ac-b5ca-9e0f4a2eda14
STIX ID: report--d71961bf-a77f-59ac-b5ca-9e0f4a2eda14
Feed Name: The Register (Security)
MediaTek disclosed a set of security vulnerabilities, most notably CVE-2024-20154 — a critical modem stack overflow enabling unauthenticated remote code execution via attacker-controlled base stations — affecting many chipsets used in smartphones, IoT devices, cars, and Chromebooks; vendors were notified and patches were issued before public disclosure, and additional high- and medium-severity issues (including privilege escalation, DoS, and information disclosure) were also addressed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
