Memory Corruption Vulnerability in MediaTek Products
CVE-2025-20804
Currently unrated
What is CVE-2025-20804?
A memory corruption vulnerability exists in MediaTek's dpe due to issues related to use after free. This vulnerability can potentially allow local escalation of privilege if an attacker has already attained system privileges. The exploitation of this vulnerability requires user interaction, representing a notable risk in environments where users may inadvertently engage with malicious content. A patch is available under ID ALPS10198951, addressing this critical security concern and should be applied promptly to ensure system integrity.
Affected Version(s)
MT6899, MT6991 Android 16.0
