logo

MediaTek rings in the new year with a parade of chipset vulns

ID: d71961bf-a77f-59ac-b5ca-9e0f4a2eda14

STIX ID: report--d71961bf-a77f-59ac-b5ca-9e0f4a2eda14

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2025-01-06

Date Updated: 2026-04-26

Author: Connor Jones

...
...

MediaTek disclosed a set of security vulnerabilities, most notably CVE-2024-20154 — a critical modem stack overflow enabling unauthenticated remote code execution via attacker-controlled base stations — affecting many chipsets used in smartphones, IoT devices, cars, and Chromebooks; vendors were notified and patches were issued before public disclosure, and additional high- and medium-severity issues (including privilege escalation, DoS, and information disclosure) were also addressed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.