In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441507; Issue ID: MSV-4112.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek
Mediatek mt6890 Mediatek mt7615 Mediatek mt7622 Mediatek mt7663 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 Mediatek software Development Kit Openwrt Openwrt openwrt |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7615:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7622:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7663:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7915:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7916:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7981:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7986:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:19.07.0:-:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* |
|
| Vendors & Products |
Mediatek
Mediatek mt6890 Mediatek mt7615 Mediatek mt7622 Mediatek mt7663 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 Mediatek software Development Kit Openwrt Openwrt openwrt |
Tue, 04 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 04 Nov 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatk
Mediatk mt6890 Mediatk mt7615 Mediatk mt7622 Mediatk mt7663 Mediatk mt7915 Mediatk mt7916 Mediatk mt7981 Mediatk mt7986 |
|
| Vendors & Products |
Mediatk
Mediatk mt6890 Mediatk mt7615 Mediatk mt7622 Mediatk mt7663 Mediatk mt7915 Mediatk mt7916 Mediatk mt7981 Mediatk mt7986 |
Tue, 04 Nov 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441507; Issue ID: MSV-4112. | |
| Weaknesses | CWE-122 | |
| References |
|
Status: PUBLISHED
Assigner: MediaTek
Published: 2025-11-04T06:20:10.764Z
Updated: 2025-11-05T04:55:51.084Z
Reserved: 2024-11-01T01:21:50.394Z
Link: CVE-2025-20734
No data.
Status : Analyzed
Published: 2025-11-04T07:15:39.283
Modified: 2025-11-05T17:13:27.050
Link: CVE-2025-20734
No data.