CVE-2024-20135
https://notcve.org/view.php?id=CVE-2024-20135
02 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-20134
https://notcve.org/view.php?id=CVE-2024-20134
02 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-20133
https://notcve.org/view.php?id=CVE-2024-20133
02 Dec 2024 — In Modem, there is a possible escalation of privilege due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-20132
https://notcve.org/view.php?id=CVE-2024-20132
02 Dec 2024 — This could lead to local escalation of privilege with no additional execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-20131
https://notcve.org/view.php?id=CVE-2024-20131
02 Dec 2024 — In Modem, there is a possible escalation of privilege due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-20130
https://notcve.org/view.php?id=CVE-2024-20130
02 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-20125
https://notcve.org/view.php?id=CVE-2024-20125
02 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. ... This could lead to local escalation of privilege if a malicious actor has already obtained System privileges. • https://corp.mediatek.com/product-security-bulletin/December-2024 • CWE-787: Out-of-bounds Write •
CVE-2024-11969 – Incorrect default permissions in Cradlepoint NetCloud Exchange
https://notcve.org/view.php?id=CVE-2024-11969
28 Nov 2024 — A normal (non-admin) user could exploit the weakness in file and folder permissions to escalate privileges, execute arbitrary code and maintain persistence on the compromised machine. It has been identified that full control permissions exist on the ‘Everyone’ group (i.e. any user who has local access to the operating system regardless of their privileges). • https://www.incibe.es/en/incibe-cert/notices/aviso/incorrect-default-permissions-cradlepoint-netcloud-exchange • CWE-276: Incorrect Default Permissions •
CVE-2018-9377
https://notcve.org/view.php?id=CVE-2018-9377
28 Nov 2024 — This could lead to local information disclosure with no additional execution privileges needed. ... This could lead to local escalation of privilege with no additional execution privileges needed. ... This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/docs/security/bulletin/pixel/2018-06-01 • CWE-908: Use of Uninitialized Resource •
CVE-2018-9374
https://notcve.org/view.php?id=CVE-2018-9374
27 Nov 2024 — This could lead to local escalation of privilege with User execution privileges needed. ... This could lead to local escalation of privilege with User execution privileges needed. • https://source.android.com/docs/security/bulletin/pixel/2018-06-01 • CWE-863: Incorrect Authorization •