VYPR
Medium severity6.5NVD Advisory· Published Jun 3, 2024· Updated Jun 17, 2026

CVE-2024-20069

CVE-2024-20069

Description

In modem, there is a possible selection of less-secure algorithm during the VoWiFi IKE due to a missing DH downgrade check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01286330; Issue ID: MSV-1430.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Mediatek/VoWiFillm-create
  • MediaTek, Inc./MT6833, MT6853, MT6855, MT6873, MT6875, MT6875T, MT6877, MT6883, MT6885, MT6889, MT6891, MT6893, MT8675, MT8771, MT8791T, MT8797v5
    Range: Modem NR15
  • cpe:2.3:o:mediatek:nr15:-:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.