CVE-2025-20647 Information

Description

In Modem there is a possible system crash due to a missing bounds check. This could lead to remote denial of service if a UE has connected to a rogue base station controlled by the attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00791311 / MOLY01067019; Issue ID: MSV-2721.

Reference

https://corp.mediatek.com/product-security-bulletin/March-2025

Share on: