Out of Bounds Write Vulnerability in MediaTek Products
CVE-2025-20774
6.7MEDIUM
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 2 December 2025
What is CVE-2025-20774?
A potential out of bounds write vulnerability exists within MediaTek systems due to a missing bounds check. This flaw could enable a malicious actor who has achieved System privileges to escalate their privileges without requiring user interaction. Affected systems may be at risk, especially if exposed to threats that could facilitate this exploit. The vulnerability can be addressed by applying the relevant patches as listed in the product security bulletin.
Affected Version(s)
MT2718, MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT8196, MT8676, MT8678, MT8792, MT8793 Android 14.0, 15.0, 16.0
