CVE-2025-20670 Information
May 06, 2025
cve
Description
In Modem there is a possible permission bypass due to improper certificate validation. This could lead to remote information disclosure if a UE has connected to a rogue base station controlled by the attacker with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01334347; Issue ID: MSV-2772.
Reference
https://corp.mediatek.com/product-security-bulletin/May-2025
Share on: