Out of Bounds Write Vulnerability in MediaTek WLAN AP Driver
CVE-2025-20686
Currently unrated
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 8 July 2025
What is CVE-2025-20686?
The MediaTek WLAN Access Point (AP) driver is affected by a vulnerability that allows for a potential out of bounds write due to improper boundary checks. This serious flaw could be exploited by attackers to execute code remotely without requiring any special permissions or user interaction. As a result, effective patches and updates are essential for securing affected systems and preventing unauthorized access.
Affected Version(s)
MT6890, MT7915, MT7916, MT7981, MT7986 SDK release 7.6.7.2 and before / OpenWrt 19.07, 21.02 (MT6890)