Security Advisory

CVE-2024-20069

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-03 02:04:48
Last updated 2024-08-01 21:52:31
Assigner MediaTek
State PUBLISHED

Description

In modem, there is a possible selection of less-secure algorithm during the VoWiFi IKE due to a missing DH downgrade check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01286330; Issue ID: MSV-1430.