In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09920036; Issue ID: MSV-3798.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/October-2025 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
15 Oct 2025, 18:45
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8873:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6980d:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6878:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8796:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6991:-:*:*:*:*:*:*:* cpe:2.3:a:rdkcentral:rdk-b:2024q1:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8775:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8676:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6899:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:23.05:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* |
|
First Time |
Mediatek mt8796
Mediatek mt6886 Mediatek mt6897 Mediatek mt6835 Mediatek mt8775 Mediatek mt8678 Mediatek mt6991 Rdkcentral rdk-b Mediatek mt6989 Mediatek mt6990 Mediatek mt8676 Rdkcentral Google android Mediatek mt6878 Mediatek Openwrt openwrt Mediatek mt8791t Mediatek mt6980d Openwrt Mediatek mt6899 Mediatek mt8873 Mediatek mt6985 |
|
References | () https://corp.mediatek.com/product-security-bulletin/October-2025 - Vendor Advisory |
14 Oct 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
14 Oct 2025, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-10-14 10:15
Updated : 2025-10-15 18:45
NVD link : CVE-2025-20722
Mitre link : CVE-2025-20722
CVE.ORG link : CVE-2025-20722
JSON object : View
Products Affected
mediatek
- mt6897
- mt6980d
- mt6886
- mt6985
- mt6835
- mt8775
- mt8791t
- mt6899
- mt6878
- mt8676
- mt6991
- mt8678
- mt6990
- mt8873
- mt8796
- mt6989
openwrt
- openwrt
rdkcentral
- rdk-b
- android
CWE
CWE-190
Integer Overflow or Wraparound