CVE-2025-20727: Buffer Overflow
In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01672601; Issue ID: MSV-4623.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch MOLY01672601
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20727?
CVE-2025-20727 is classified as a critical vulnerability due to the potential for remote privilege escalation via a heap buffer overflow.
How do I fix CVE-2025-20727?
To fix CVE-2025-20727, users should update their MediaTek modem firmware to the latest patched version provided by the vendor.
What are the potential impacts of CVE-2025-20727?
The potential impact of CVE-2025-20727 includes unauthorized access and control over the device by an attacker through a rogue base station.
Who is affected by CVE-2025-20727?
Devices running affected versions of MediaTek modems such as the Lr12a, Nr15, Nr16, Nr17, and Nr17r are impacted by CVE-2025-20727.
Is user interaction required to exploit CVE-2025-20727?
No, user interaction is not required to exploit CVE-2025-20727, making it more dangerous.