← Back

CVE-2025-20740

nvd nist
Published: Nov 4, 2025Modified: Nov 5, 2025

JSON object

Loading...
4.7
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.0 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

In wlan STA driver, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435337; Issue ID: MSV-4036.

Affected (1)

1 product
Software Development Kit
Configuration A
1 vulnerable · 6 platform
Vulnerable SoftwareAffected Versions
Up to 3.7
Running on/withPlatform Versions
Mediatek
Mt7902
All versions
Mediatek
Mt7920
All versions
Mediatek
Mt7921
All versions
Mediatek
Mt7922
All versions
Mediatek
Mt7925
All versions
Mediatek
Mt7927
All versions

References (1)

Source: security@mediatek.com
Vendor Advisory

Timeline

No history available yet.