Out of Bounds Write Vulnerability in MediaTek Products
CVE-2025-20800
Currently unrated
Key Information:
- Vendor
MediaTek
- Vendor
- CVE Published:
- 6 January 2026
What is CVE-2025-20800?
A potential out of bounds write vulnerability exists in MediaTek's mminfra component due to inadequate bounds checking. This issue can enable a malicious actor with System privilege to escalate their access without requiring user interaction. Immediate patching is necessary to mitigate the risk associated with this vulnerability. Relevant updates are available through Patch ID: ALPS10267349.
Affected Version(s)
MT2718, MT6899, MT6989, MT6991, MT8678, MT8793 Android 14.0, 15.0, 16.0
