In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09920036; Issue ID: MSV-3798.
References
| Link | Resource |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/October-2025 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
15 Oct 2025, 18:45
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Mediatek mt8796
Rdkcentral Mediatek Mediatek mt8678 Openwrt Mediatek mt6886 Mediatek mt6985 Mediatek mt6897 Mediatek mt8791t Google android Mediatek mt6991 Mediatek mt8676 Rdkcentral rdk-b Mediatek mt6980d Openwrt openwrt Mediatek mt6990 Mediatek mt8775 Mediatek mt6989 Mediatek mt6878 Mediatek mt6835 Mediatek mt6899 Mediatek mt8873 |
|
| References | () https://corp.mediatek.com/product-security-bulletin/October-2025 - Vendor Advisory | |
| CPE | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6899:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8676:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8873:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:23.05:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6878:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6980d:-:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8775:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8796:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6991:-:*:*:*:*:*:*:* cpe:2.3:a:rdkcentral:rdk-b:2024q1:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8678:-:*:*:*:*:*:*:* |
14 Oct 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
14 Oct 2025, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-14 10:15
Updated : 2025-10-15 18:45
NVD link : CVE-2025-20722
Mitre link : CVE-2025-20722
CVE.ORG link : CVE-2025-20722
JSON object : View
Products Affected
mediatek
- mt6886
- mt6899
- mt6878
- mt8678
- mt6835
- mt6990
- mt8775
- mt8676
- mt6897
- mt6989
- mt6980d
- mt6985
- mt8873
- mt8796
- mt8791t
- mt6991
rdkcentral
- rdk-b
- android
openwrt
- openwrt
CWE
CWE-190
Integer Overflow or Wraparound
