Back to search
CVE-2025-20760
Published: Jan 6, 2026
Modified: Mar 30, 2026
PUBLISHED
Description
In Modem, there is a possible read of uninitialized heap data due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01676750; Issue ID: MSV-4653.
| Vendor | Product | Versions |
|---|---|---|
MediaTek, Inc. | MediaTek chipset | affected MT2735affected MT2737affected MT6833affected MT6835affected MT6853+43 more versions |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now