In ims service, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01671924; Issue ID: MSV-4620.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 04 Nov 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Mediatk
Mediatk mt2735
Mediatk mt2737
Mediatk mt6739
Mediatk mt6761
Mediatk mt6762
Mediatk mt6762d
Mediatk mt6762m
Mediatk mt6763
Mediatk mt6765
Mediatk mt6765t
Mediatk mt6767
Mediatk mt6768
Mediatk mt6769
Mediatk mt6769k
Mediatk mt6769s
Mediatk mt6769t
Mediatk mt6769z
Mediatk mt6771
Mediatk mt6833
Mediatk mt6833p
Mediatk mt6853
Mediatk mt6853t
Mediatk mt6855
Mediatk mt6855t
Mediatk mt6873
Mediatk mt6875
Mediatk mt6875t
Mediatk mt6877
Mediatk mt6877t
Mediatk mt6877tt
Mediatk mt6879
Mediatk mt6880
Mediatk mt6883
Mediatk mt6885
Mediatk mt6886
Mediatk mt6889
Mediatk mt6890
Mediatk mt6891
Mediatk mt6893
Mediatk mt6895
Mediatk mt6895tt
Mediatk mt6896
Mediatk mt6980
Mediatk mt6980d
Mediatk mt6983
Mediatk mt6983t
Mediatk mt6985
Mediatk mt6985t
Mediatk mt6989
Mediatk mt6989t
Mediatk mt6990
Mediatk mt8666
Mediatk mt8667
Mediatk mt8673
Mediatk mt8675
Mediatk mt8765
Mediatk mt8766
Mediatk mt8766r
Mediatk mt8768
Mediatk mt8771
Mediatk mt8786
Mediatk mt8788
Mediatk mt8788e
Mediatk mt8791
Mediatk mt8791t
Mediatk mt8795t
Mediatk mt8797
Mediatk mt8798
Mediatk mt8893
Vendors & Products Mediatk
Mediatk mt2735
Mediatk mt2737
Mediatk mt6739
Mediatk mt6761
Mediatk mt6762
Mediatk mt6762d
Mediatk mt6762m
Mediatk mt6763
Mediatk mt6765
Mediatk mt6765t
Mediatk mt6767
Mediatk mt6768
Mediatk mt6769
Mediatk mt6769k
Mediatk mt6769s
Mediatk mt6769t
Mediatk mt6769z
Mediatk mt6771
Mediatk mt6833
Mediatk mt6833p
Mediatk mt6853
Mediatk mt6853t
Mediatk mt6855
Mediatk mt6855t
Mediatk mt6873
Mediatk mt6875
Mediatk mt6875t
Mediatk mt6877
Mediatk mt6877t
Mediatk mt6877tt
Mediatk mt6879
Mediatk mt6880
Mediatk mt6883
Mediatk mt6885
Mediatk mt6886
Mediatk mt6889
Mediatk mt6890
Mediatk mt6891
Mediatk mt6893
Mediatk mt6895
Mediatk mt6895tt
Mediatk mt6896
Mediatk mt6980
Mediatk mt6980d
Mediatk mt6983
Mediatk mt6983t
Mediatk mt6985
Mediatk mt6985t
Mediatk mt6989
Mediatk mt6989t
Mediatk mt6990
Mediatk mt8666
Mediatk mt8667
Mediatk mt8673
Mediatk mt8675
Mediatk mt8765
Mediatk mt8766
Mediatk mt8766r
Mediatk mt8768
Mediatk mt8771
Mediatk mt8786
Mediatk mt8788
Mediatk mt8788e
Mediatk mt8791
Mediatk mt8791t
Mediatk mt8795t
Mediatk mt8797
Mediatk mt8798
Mediatk mt8893

Tue, 04 Nov 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 04 Nov 2025 06:30:00 +0000

Type Values Removed Values Added
Description In ims service, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01671924; Issue ID: MSV-4620.
Weaknesses CWE-787
References

cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2025-11-04T15:10:00.094Z

Reserved: 2024-11-01T01:21:50.392Z

Link: CVE-2025-20725

cve-icon Vulnrichment

Updated: 2025-11-04T15:09:33.776Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-04T07:15:32.113

Modified: 2025-11-04T16:15:54.433

Link: CVE-2025-20725

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-04T16:32:59Z