Memory Corruption Vulnerability in MediaTek Products
CVE-2025-20804

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
6 January 2026

What is CVE-2025-20804?

A memory corruption vulnerability exists in MediaTek's dpe due to issues related to use after free. This vulnerability can potentially allow local escalation of privilege if an attacker has already attained system privileges. The exploitation of this vulnerability requires user interaction, representing a notable risk in environments where users may inadvertently engage with malicious content. A patch is available under ID ALPS10198951, addressing this critical security concern and should be applied promptly to ensure system integrity.

Affected Version(s)

MT6899, MT6991 Android 16.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-20804 : Memory Corruption Vulnerability in MediaTek Products