Impact
The MediaTek TFA module contains a missing bounds check that allows an out‑of‑bounds write. When triggered, this memory corruption can crash the component or otherwise halt its operation, resulting in a local denial of service. The exploit requires the attacker to already possess System privilege, but no user interaction is needed to trigger the failure. The impact is confined to the host device and does not directly expose data, but it can disrupt critical functions that rely on the TFA service.
Affected Systems
The affected products are MediaTek chipsets. No specific firmware or product version data is provided in the advisory, so all current MediaTek devices using the TFA component are considered potentially impacted until a patch is applied.
Risk and Exploitability
The EPSS score is < 1%, and the vulnerability is not listed in CISA KEV. The CVSS score is 4.4, indicating a moderate severity. Given the local nature of the attack and the requirement for System privilege, the risk remains significant for devices that allow privileged exploitation but lower for general users. The attack can be carried out immediately once the necessary privileges are obtained, making it a high‑priority issue for devices that run the TFA component under elevated contexts.
OpenCVE Enrichment