Mediatek Inc Mediatek Chipset vulnerabilities

74 known vulnerabilities affecting mediatek_inc/mediatek_chipset.

Total CVEs
74
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH22MEDIUM50

Vulnerabilities

Page 4 of 4
CVE-2025-20786MEDIUMCVSS 6.7vMT6739vMT6761+43 more2026-01-06
CVE-2025-20786 [MEDIUM] CWE-415 CVE-2025-20786: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10149882; Issue ID: MSV-4673.
cvelistv5nvd
CVE-2025-20807MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20807 [MEDIUM] CWE-190 CVE-2025-20807: In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114841; Issue ID: MSV-4451.
cvelistv5nvd
CVE-2025-20803MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20803 [MEDIUM] CWE-190 CVE-2025-20803: In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local e In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10199779; Issue ID: MSV-4504.
cvelistv5nvd
CVE-2025-20805MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20805 [MEDIUM] CWE-416 CVE-2025-20805: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114696; Issue ID: MSV-4480.
cvelistv5nvd
CVE-2025-20782MEDIUMCVSS 6.7vMT6739vMT6761+43 more2026-01-06
CVE-2025-20782 [MEDIUM] CWE-787 CVE-2025-20782: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4685.
cvelistv5nvd
CVE-2025-20783MEDIUMCVSS 6.7vMT6739vMT6761+43 more2026-01-06
CVE-2025-20783 [MEDIUM] CWE-787 CVE-2025-20783: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4684.
cvelistv5nvd
CVE-2025-20806MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20806 [MEDIUM] CWE-416 CVE-2025-20806: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114835; Issue ID: MSV-4479.
cvelistv5nvd
CVE-2025-20761MEDIUMCVSS 6.5vMT2735vMT2737+53 more2026-01-06
CVE-2025-20761 [MEDIUM] CWE-754 CVE-2025-20761: In Modem, there is a possible system crash due to incorrect error handling. This could lead to remot In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01311265; Issue ID: MSV-4655.
cvelistv5nvd
CVE-2025-20804MEDIUMCVSS 6.7vMT6899vMT69912026-01-06
CVE-2025-20804 [MEDIUM] CWE-416 CVE-2025-20804: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10198951; Issue ID: MSV-4503.
cvelistv5nvd
CVE-2025-20794MEDIUMCVSS 6.5vMT2735vMT2737+48 more2026-01-06
CVE-2025-20794 [MEDIUM] CWE-121 CVE-2025-20794: In Modem, there is a possible system crash due to improper input validation. This could lead to remo In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01689259 / MOLY01586470; Issue ID: MSV-4847.
cvelistv5nvd
CVE-2025-20802MEDIUMCVSS 6.7vMT6991vMT8196+4 more2026-01-06
CVE-2025-20802 [MEDIUM] CWE-416 CVE-2025-20802: In geniezone, there is a possible memory corruption due to use after free. This could lead to local In geniezone, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10238968; Issue ID: MSV-4914.
cvelistv5nvd
CVE-2025-20762MEDIUMCVSS 6.5vMT6835vMT6835T+13 more2026-01-06
CVE-2025-20762 [MEDIUM] CWE-617 CVE-2025-20762: In Modem, there is a possible system crash due to incorrect error handling. This could lead to remot In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01685181; Issue ID: MSV-4760.
cvelistv5nvd
CVE-2025-20760MEDIUMCVSS 6.5vMT2735vMT2737+46 more2026-01-06
CVE-2025-20760 [MEDIUM] CWE-617 CVE-2025-20760: In Modem, there is a possible read of uninitialized heap data due to an uncaught exception. This cou In Modem, there is a possible read of uninitialized heap data due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01676750; Issue ID: MSV-4653.
cvelistv5nvd
CVE-2025-20785MEDIUMCVSS 6.7vMT6739vMT6761+43 more2026-01-06
CVE-2025-20785 [MEDIUM] CWE-416 CVE-2025-20785: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10149882; Issue ID: MSV-4677.
cvelistv5nvd