Out of Bounds Write Vulnerability in MediaTek Products
CVE-2025-20774
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 2 December 2025
What is CVE-2025-20774?
A potential out of bounds write vulnerability exists within MediaTek systems due to a missing bounds check. This flaw could enable a malicious actor who has achieved System privileges to escalate their privileges without requiring user interaction. Affected systems may be at risk, especially if exposed to threats that could facilitate this exploit. The vulnerability can be addressed by applying the relevant patches as listed in the product security bulletin.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MT2718, MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT8196, MT8676, MT8678, MT8792, MT8793 Android 14.0, 15.0, 16.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
