CVE-2025-20659: Input Validation
In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01519028; Issue ID: MSV-2768.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20659?
CVE-2025-20659 has the potential to cause remote denial of service through improper input validation.
How do I fix CVE-2025-20659?
To mitigate CVE-2025-20659, it is crucial to apply the latest patches provided by MediaTek for affected devices.
Which devices are affected by CVE-2025-20659?
CVE-2025-20659 impacts several MediaTek chipsets, including MT8788 and others mentioned in the advisory.
Can CVE-2025-20659 be exploited without user interaction?
Yes, CVE-2025-20659 can be exploited without any user interaction, making it a more severe risk.
What is the potential impact of CVE-2025-20659?
The exploitation of CVE-2025-20659 can lead to a complete system crash and denial of service.