Out of Bounds Write Vulnerability in MediaTek Products
CVE-2025-20769

3.4LOW

What is CVE-2025-20769?

This vulnerability presents a potential out of bounds write due to insufficient bounds checking in the display functionality of MediaTek products. If a malicious actor gains access to system privileges, they could exploit this security weakness to escalate their privileges without requiring user interaction. It is crucial for users and administrators to apply the necessary patches and updates to safeguard against such vulnerabilities.

Affected Version(s)

MT2718, MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT8196, MT8676, MT8678, MT8792, MT8793 Android 14.0, 15.0, 16.0

References

CVSS V3.1

Score:
3.4
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.