CVE-2025-20734: Medium severity MediaTek Software Development Kit vulnerability
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441507; Issue ID: MSV-4112.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20734?
CVE-2025-20734 is considered a high severity vulnerability due to its potential impact on local privilege escalation.
How do I fix CVE-2025-20734?
To fix CVE-2025-20734, apply the patch identified by Patch ID WCNCR00441507 as soon as it is available.
Who is affected by CVE-2025-20734?
CVE-2025-20734 affects users of the MediaTek Software Development Kit versions up to 7.6.7.2 and specific versions of OpenWrt.
What type of vulnerability is CVE-2025-20734?
CVE-2025-20734 is an out-of-bounds write vulnerability that could lead to local privilege escalation.
Is user interaction required to exploit CVE-2025-20734?
No, user interaction is not needed for the exploitation of CVE-2025-20734.