CVE-2025-20729: Medium severity MediaTek Software Development Kit vulnerability
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441512; Issue ID: MSV-4153.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20729?
CVE-2025-20729 is classified as a high severity vulnerability due to the potential for local escalation of privilege.
How do I fix CVE-2025-20729?
To fix CVE-2025-20729, apply the patch identified by Patch ID: WCNCR00441512 immediately.
Who is affected by CVE-2025-20729?
CVE-2025-20729 affects users of the MediaTek Software Development Kit versions up to 7.6.7.2 and specific versions of OpenWrt.
What are the consequences of exploiting CVE-2025-20729?
Exploitation of CVE-2025-20729 could allow a malicious actor with system privileges to gain elevated privileges on the device.
Is user interaction required for the exploitation of CVE-2025-20729?
No, user interaction is not needed for the exploitation of CVE-2025-20729.