CVE-2025-20674 Information

Description

In wlan AP driver there is a possible way to inject arbitrary packet due to a missing permission check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00413202; Issue ID: MSV-3303.

Reference

https://corp.mediatek.com/product-security-bulletin/June-2025

Share on: