Out of Bounds Read Vulnerability in MediaTek WLAN AP Driver
CVE-2025-20692

Currently unrated

What is CVE-2025-20692?

A vulnerability in the MediaTek WLAN Access Point (AP) driver allows for an out of bounds read due to inadequate bounds checking. This exposure can potentially lead to local information disclosure, necessitating user execution privileges for exploitation. Notably, user interaction is not required, making this vulnerability particularly concerning for device security. A patch has been released under ID WCNCR00418040 to address this issue.

Affected Version(s)

MT6890, MT7615, MT7622, MT7663, MT7915, MT7916, MT7981, MT7986 SDK release 7.6.7.2 and before / openWRT 19.07, 21.02

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-20692 : Out of Bounds Read Vulnerability in MediaTek WLAN AP Driver