CVE-2025-20791: Medium severity MediaTek Nr15 vulnerability
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01661189; Issue ID: MSV-4298.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch MOLY01661189 - Compensating control
Mitigate remote DoS risk by preventing UEs from connecting to rogue base stations controlled by an attacker (e.g., use network access controls/validation to block untrusted base stations).
- Operational
Ensure the device/software is updated with patch MOLY01661189 (Issue ID MSV-4298) and verify stability/error handling to prevent system crashes from incorrect error handling.
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20791?
CVE-2025-20791 is a vulnerability that can cause a system crash, leading to a remote denial of service.
How do I fix CVE-2025-20791?
To fix CVE-2025-20791, apply the relevant patches provided by MediaTek as part of their security update.
What products are affected by CVE-2025-20791?
CVE-2025-20791 affects MediaTek's NR15 modem, particularly when connected to rogue base stations.
Can CVE-2025-20791 be exploited without user interaction?
Yes, CVE-2025-20791 can be exploited remotely without any user interaction required.
What are the potential consequences of CVE-2025-20791?
The primary consequence of CVE-2025-20791 is a denial of service, resulting in a system crash.