CVE-2025-20708
In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01123853; Issue ID: MSV-4131.
| CWE | CWE-787 |
| Vendor | mediatek, inc. |
| Product | mt2735, mt2737, mt6813, mt6815, mt6833, mt6833p, mt6835, mt6835t, mt6853, mt6853t, mt6855, mt6855t, mt6873, mt6875, mt6875t, mt6877, mt6877t, mt6877tt, mt6878, mt6878m, mt6879, mt6880, mt6883, mt6885, mt6886, mt6889, mt6890, mt6891, mt6893, mt6895, mt6895tt, mt6896, mt6897, mt6899, mt6980, mt6980d, mt6983, mt6983t, mt6985, mt6985t, mt6989, mt6989t, mt6990, mt6991, mt8673, mt8675, mt8676, mt8678, mt8771, mt8791, mt8791t, mt8792, mt8795t, mt8797, mt8798, mt8863, mt8873, mt8883, mt8893 |
| Published | Sep 1, 2025 |
| Last Updated | Feb 26, 2026 |
Get instant alerts for mediatek, inc. mt2735, mt2737, mt6813, mt6815, mt6833, mt6833p, mt6835, mt6835t, mt6853, mt6853t, mt6855, mt6855t, mt6873, mt6875, mt6875t, mt6877, mt6877t, mt6877tt, mt6878, mt6878m, mt6879, mt6880, mt6883, mt6885, mt6886, mt6889, mt6890, mt6891, mt6893, mt6895, mt6895tt, mt6896, mt6897, mt6899, mt6980, mt6980d, mt6983, mt6983t, mt6985, mt6985t, mt6989, mt6989t, mt6990, mt6991, mt8673, mt8675, mt8676, mt8678, mt8771, mt8791, mt8791t, mt8792, mt8795t, mt8797, mt8798, mt8863, mt8873, mt8883, mt8893
Be the first to know when new high vulnerabilities affecting mediatek, inc. mt2735, mt2737, mt6813, mt6815, mt6833, mt6833p, mt6835, mt6835t, mt6853, mt6853t, mt6855, mt6855t, mt6873, mt6875, mt6875t, mt6877, mt6877t, mt6877tt, mt6878, mt6878m, mt6879, mt6880, mt6883, mt6885, mt6886, mt6889, mt6890, mt6891, mt6893, mt6895, mt6895tt, mt6896, mt6897, mt6899, mt6980, mt6980d, mt6983, mt6983t, mt6985, mt6985t, mt6989, mt6989t, mt6990, mt6991, mt8673, mt8675, mt8676, mt8678, mt8771, mt8791, mt8791t, mt8792, mt8795t, mt8797, mt8798, mt8863, mt8873, mt8883, mt8893 are published โ delivered to Slack, Telegram or Discord.