CVE-2020-13840: Google Android

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command handler buffer overflow. The LG ID is LVE-SMP-200008 (June 2020).

Affected products

  • Google Android: version 7.2 only; version 8.0 only; version 8.1 only; version 9.0 only; version 10.0 only

Published 2020-06-05. Last modified 2026-06-17.