CVE-2020-13840

CRITICAL

Google Android - Buffer Overflow

Title source: rule
STIX 2.1

Description

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command handler buffer overflow. The LG ID is LVE-SMP-200008 (June 2020).

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://lgsecurity.lge.com/

Scores

CVSS v3 9.8
EPSS 0.0022
EPSS Percentile 44.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-120
Status published
Products (5)
google/android 7.2
google/android 8.0
google/android 8.1
google/android 9.0
google/android 10.0
Published Jun 05, 2020
Tracked Since Feb 18, 2026