Description
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00422323; Issue ID: MSV-3810.
Published: 2025-10-14
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 21 Oct 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek mt6799
Mediatek mt6990 Firmware
Mediatek mt7990 Firmware
Mediatek mt7992 Firmware
Mediatek mt7993 Firmware
Vendors & Products Mediatek mt6799
Mediatek mt6990 Firmware
Mediatek mt7990 Firmware
Mediatek mt7992 Firmware
Mediatek mt7993 Firmware

Thu, 16 Oct 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek
Mediatek mt6990
Mediatek mt7990
Mediatek mt7991
Mediatek mt7992
Mediatek mt7993
Mediatek software Development Kit
Openwrt
Openwrt openwrt
CPEs cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7990:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7991:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7992:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt7993:-:*:*:*:*:*:*:*
cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:*
cpe:2.3:o:openwrt:openwrt:23.05:*:*:*:*:*:*:*
Vendors & Products Mediatek
Mediatek mt6990
Mediatek mt7990
Mediatek mt7991
Mediatek mt7992
Mediatek mt7993
Mediatek software Development Kit
Openwrt
Openwrt openwrt

Tue, 14 Oct 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Oct 2025 09:30:00 +0000

Type Values Removed Values Added
Description In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00422323; Issue ID: MSV-3810.
Weaknesses CWE-122
References

Subscriptions

Mediatek Mt6799 Mt6990 Mt6990 Firmware Mt7990 Mt7990 Firmware Mt7991 Mt7992 Mt7992 Firmware Mt7993 Mt7993 Firmware Software Development Kit
Openwrt Openwrt
cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2026-02-26T17:47:43.510Z

Reserved: 2024-11-01T01:21:50.385Z

Link: CVE-2025-20712

cve-icon Vulnrichment

Updated: 2025-10-14T13:21:37.852Z

cve-icon NVD

Status : Analyzed

Published: 2025-10-14T10:15:35.717

Modified: 2025-10-16T15:22:17.933

Link: CVE-2025-20712

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-10-21T13:10:35Z

Weaknesses