Impact
The vulnerability arises from a missing bounds check in the imgsys component of MediaTek chipsets. This allows an out‑of‑bounds write that can be exploited by an attacker who already has System privileges. The flaw does not require user interaction, and its exploitation could elevate local privileges further or allow a malicious actor to gain additional control over the device. The weakness is classified as both a missing bounds check (CWE‑1285) and an out‑of‑bounds write (CWE‑787).
Affected Systems
Affected are MediaTek chipsets MT6899, MT6991, MT8678, and MT8793, as well as devices running Android 15.0 that incorporate these chips. The patch identifier ALPS10362725 (Issue ID MSV‑5694) addresses the issue.
Risk and Exploitability
The CVSS base score is 6.7, indicating a moderate severity, while the EPSS score is below 1%, suggesting that exploitation is currently rare. The vulnerability is not listed in the CISA KEV catalog, further lowering the perceived risk from an external exploitation perspective. The likely attack vector is local; an attacker would need access to a system with System privileges and knowledge of the imgsys component to perform an out‑of‑bounds write. Although the exposure is limited to devices with the affected MediaTek chips, any compromise could lead to further lateral movement or persistence on the host.
OpenCVE Enrichment