Bluetooth Firmware Vulnerability in MediaTek Products
CVE-2025-20695

6.5MEDIUM

What is CVE-2025-20695?

In certain versions of MediaTek's Bluetooth firmware, a flaw exists that may cause the system to crash due to an uncaught exception. This vulnerability enables a potential remote denial of service, as it can be exploited without requiring user interaction or additional execution privileges. Affected systems may experience disruptions in functionality, highlighting the importance of applying patches to maintain system integrity.

Affected Version(s)

MT6639, MT6653, MT6985, MT6989, MT6990, MT6991, MT7925, MT7927, MT8196, MT8678, MT8796 Android 13.0, 14.0, 15.0 / SDK release 3.7 and before / openWRT 21.02, 23.05

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.