In wlan driver, there is a possible out of bound read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08998291; Issue ID: MSV-1604.
CVE ID: CVE-2024-20138
CVSS Base Severity: LOW
CVSS Base Score: 0.0
Vendor: MediaTek, Inc.
Product: MT3605, MT6985, MT6989, MT6990, MT7925, MT7927, MT8195, MT8370, MT8390
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 11.44% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)