ZeroHour

CVE-2024-20153

CVSS 3.1
7.5 high
EPSS
<1%p25
Published
()
Modified
Description

In wlan STA, there is a possible way to trick a client to connect to an AP with spoofed SSID. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08990446 / ALPS09057442; Issue ID: MSV-1598.

Vendors
linuxfoundationmediatekgoogle
Products
yocto, software development kit, android
Weakness
CWE-304
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.