Vulnerability Description
An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass intended access restrictions. The LG ID is LVE-SMP-200009 (June 2020).
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | 9.0 | |
| Lg | Cv1 | - |
| Lg | Cv1S | - |
| Lg | Cv3 | - |
| Lg | Cv5 | - |
| Lg | Cv7 | - |
| Lg | Cv7As | - |
| Lg | Dh10 | - |
| Lg | Dh15 | - |
| Lg | Dh30 | - |
| Lg | Dh35 | - |
| Lg | Dh40 | - |
| Lg | Dh5 | - |
| Lg | Dh50 | - |
| Lg | G6 | - |
| Lg | G7 | - |
| Lg | G8 | - |
| Lg | K20 | - |
| Lg | K30 | - |
| Lg | K40 | - |
References
- https://lgsecurity.lge.com/Vendor Advisory
- https://lgsecurity.lge.com/Vendor Advisory
FAQ
What is CVE-2020-13841?
CVE-2020-13841 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass intended access restrictions. The LG ID is LVE-SMP-200009 (June 2...
How severe is CVE-2020-13841?
CVE-2020-13841 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-13841?
Check the references section above for vendor advisories and patch information. Affected products include: Google Android, Lg Cv1, Lg Cv1S, Lg Cv3, Lg Cv5.