Out of Bounds Write Vulnerability in MediaTek WLAN AP Driver
CVE-2025-20710
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 14 October 2025
What is CVE-2025-20710?
A vulnerability has been identified in the MediaTek WLAN AP driver, where an integer overflow can occur, resulting in a possible out of bounds write. This condition allows for remote escalation of privilege without requiring any additional execution privileges or user interaction for exploitation. It poses significant security risks, making it essential for users and organizations to apply the necessary patches to mitigate potential threats. For details regarding the patch, refer to the designated issue ID MSV-3515.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MT6890, MT7915, MT7916, MT7981, MT7986 SDK release 7.6.7.2 and before / OpenWrt 19.07, 21.02 (MT6890)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
