In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435343; Issue ID: MSV-4040.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek software Development Kit
Openwrt Openwrt openwrt |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7615:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7622:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7663:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7915:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7916:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7981:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7986:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:19.07.0:-:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* |
|
| Vendors & Products |
Mediatek software Development Kit
Openwrt Openwrt openwrt |
Tue, 04 Nov 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek
Mediatek mt6890 Mediatek mt7615 Mediatek mt7622 Mediatek mt7663 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 |
|
| Vendors & Products |
Mediatek
Mediatek mt6890 Mediatek mt7615 Mediatek mt7622 Mediatek mt7663 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 |
Tue, 04 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 04 Nov 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435343; Issue ID: MSV-4040. | |
| Weaknesses | CWE-121 | |
| References |
|
Status: PUBLISHED
Assigner: MediaTek
Published: 2025-11-04T06:19:52.883Z
Updated: 2025-11-05T04:55:42.993Z
Reserved: 2024-11-01T01:21:50.395Z
Link: CVE-2025-20737
Updated: 2025-11-04T15:05:49.793Z
Status : Analyzed
Published: 2025-11-04T07:15:41.730
Modified: 2025-11-05T17:12:57.940
Link: CVE-2025-20737
No data.