In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01516959; Issue ID: MSV-3502.
                
            References
                    | Link | Resource | 
|---|---|
| https://corp.mediatek.com/product-security-bulletin/September-2025 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    03 Sep 2025, 16:07
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://corp.mediatek.com/product-security-bulletin/September-2025 - Vendor Advisory | |
| CPE | cpe:2.3:h:mediatek:mt6878:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8792:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8873:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:* cpe:2.3:o:mediatek:nr17:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8676:-:*:*:*:*:*:*:* cpe:2.3:o:mediatek:nr17r:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6899:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6991:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6878m:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8883:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6813:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8863:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6835t:-:*:*:*:*:*:*:* | |
| First Time | Mediatek mt6835t Mediatek mt8883 Mediatek mt6813 Mediatek Mediatek mt6878 Mediatek mt8676 Mediatek mt6878m Mediatek mt8678 Mediatek mt6899 Mediatek mt8792 Mediatek nr17r Mediatek mt8873 Mediatek nr17 Mediatek mt8863 Mediatek mt6835 Mediatek mt6897 Mediatek mt6991 | 
02 Sep 2025, 13:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 8.8 | 
01 Sep 2025, 06:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-09-01 06:15
Updated : 2025-09-03 16:07
NVD link : CVE-2025-20704
Mitre link : CVE-2025-20704
CVE.ORG link : CVE-2025-20704
JSON object : View
Products Affected
                mediatek
- mt8863
- mt6897
- nr17
- mt6835
- mt6899
- mt6878m
- mt6878
- mt8873
- mt8883
- nr17r
- mt6835t
- mt6813
- mt8792
- mt8676
- mt6991
- mt8678
CWE
                
                    
                        
                        CWE-787
                        
            Out-of-bounds Write
