Out of Bounds Read Vulnerability in MediaTek WLAN AP Driver
CVE-2025-20692
Currently unrated
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 8 July 2025
What is CVE-2025-20692?
A vulnerability in the MediaTek WLAN Access Point (AP) driver allows for an out of bounds read due to inadequate bounds checking. This exposure can potentially lead to local information disclosure, necessitating user execution privileges for exploitation. Notably, user interaction is not required, making this vulnerability particularly concerning for device security. A patch has been released under ID WCNCR00418040 to address this issue.
Affected Version(s)
MT6890, MT7615, MT7622, MT7663, MT7915, MT7916, MT7981, MT7986 SDK release 7.6.7.2 and before / openWRT 19.07, 21.02