In pda, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10127160; Issue ID: MSV-4542.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| CPEs | cpe:2.3:h:mediatek:mt6899:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6991:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8793:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:16.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android |
Wed, 05 Nov 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek
Mediatek mt6899 Mediatek mt6991 Mediatek mt8793 |
|
| Vendors & Products |
Mediatek
Mediatek mt6899 Mediatek mt6991 Mediatek mt8793 |
Tue, 04 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 04 Nov 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In pda, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10127160; Issue ID: MSV-4542. | |
| Weaknesses | CWE-416 | |
| References |
|
Status: PUBLISHED
Assigner: MediaTek
Published: 2025-11-04T06:19:59.710Z
Updated: 2025-11-05T04:55:45.818Z
Reserved: 2024-11-01T01:21:50.396Z
Link: CVE-2025-20744
Updated: 2025-11-04T21:00:49.645Z
Status : Analyzed
Published: 2025-11-04T07:15:47.070
Modified: 2025-11-05T17:12:01.150
Link: CVE-2025-20744
No data.