Skip to main content

Vendor/product archive

mediatek / mt6990 CVEs

Beta · best-effort

46 CVEs tagged to mediatek / mt69905 Critical, 8 High, 32 Medium, 1 Low, 0 Unrated.

CVE-2025-20747

Published Nov 4, 2025

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtain…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20746

Published Nov 4, 2025

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtain…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20722

Published Oct 14, 2025

In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the Sy…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20695

Published Jul 8, 2025

In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User in…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20674

Published Jun 2, 2025

In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead to remote escalation of privilege with no additional execu…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2025-20656

Published Apr 7, 2025

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, w…

CVSS 6.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20649

Published Mar 3, 2025

In Bluetooth Stack SW, there is a possible information disclosure due to a missing permission check. This could lead to remote (proximal/adjacent) information disclosure with no a…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-20635

Published Feb 3, 2025

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device…

CVSS 6.6 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2024-20139

Published Dec 2, 2024

In Bluetooth firmware, there is a possible firmware asssert due to improper handling of exceptional conditions. This could lead to local denial of service with no additional execu…

CVSS 6.5 · Medium

CVE-2024-20132

Published Dec 2, 2024

In Modem, there is a possible out of bonds write due to a mission bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Us…

CVSS 6.7 · Medium
Showing 1-25 of 46 CVEsPage 1 of 2