Mediatek
Mediatek Nr17: vulnerabilidades y CVE
Mediatek Nr17 tiene 48 vulnerabilidades publicadas, 17 de ellas en los últimos 12 meses. 5 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE48
Últimos 12 meses17
Críticas5
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-20434 | Alta (7.5) | 0.23% | — | 2 mar 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2026-20422 | Media (6.5) | 0.24% | — | 2 feb 2026 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20420 | Media (6.5) | 0.24% | — | 2 feb 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20406 | Media (6.5) | 0.24% | — | 2 feb 2026 | In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20405 | Media (6.5) | 0.24% | — | 2 feb 2026 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20404 | Media (6.5) | 0.50% | — | 2 feb 2026 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20403 | Media (6.5) | 0.24% | — | 2 feb 2026 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20794 | Media (6.5) | 0.28% | — | 6 ene 2026 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20793 | Media (6.5) | 0.28% | — | 6 ene 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20762 | Media (6.5) | 0.29% | — | 6 ene 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20761 | Media (6.5) | 0.26% | — | 6 ene 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20760 | Media (6.5) | 0.29% | — | 6 ene 2026 | In Modem, there is a possible read of uninitialized heap data due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20758 | Media (4.9) | 0.51% | — | 2 dic 2025 | In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20754 | Media (5.3) | 0.49% | — | 2 dic 2025 | In Modem, there is a possible system crash due to an incorrect bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20752 | Media (6.5) | 0.24% | — | 2 dic 2025 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20727 | Alta (8.1) | 0.53% | — | 4 nov 2025 | In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20726 | Alta (7.5) | 0.48% | — | 4 nov 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20708 | Alta (8.8) | 0.34% | — | 1 sept 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20704 | Alta (8) | 0.30% | — | 1 sept 2025 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20703 | Media (6.5) | 0.30% | — | 1 sept 2025 | In Modem, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20678 | Media (6.5) | 0.36% | — | 2 jun 2025 | In ims service, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2025-20670 | Media (5.7) | 0.32% | — | 5 may 2025 | In Modem, there is a possible permission bypass due to improper certificate validation. This could lead to remote information disclosure, if a UE has connected to a rogue base station controlled by the attacker, with… |
| CVE-2025-20667 | Alta (7.5) | 0.43% | — | 5 may 2025 | In Modem, there is a possible information disclosure due to incorrect error handling. This could lead to remote information disclosure, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20634 | Crítica (9.8) | 0.77% | — | 3 feb 2025 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2024-20151 | Media (6.7) | 0.17% | — | 6 ene 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is… |
| CVE-2024-20150 | Alta (7.5) | 0.76% | — | 6 ene 2025 | In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID:… |
| CVE-2024-20131 | Media (6.7) | 0.18% | — | 2 dic 2024 | In Modem, there is a possible escalation of privilege due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for… |
| CVE-2024-20082 | Crítica (9.8) | 1.4% | — | 14 ago 2024 | In Modem, there is a possible memory corruption due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2024-20070 | Media (5.1) | 0.10% | — | 3 jun 2024 | In modem, there is a possible information disclosure due to using risky cryptographic algorithm during connection establishment negotiation. This could lead to remote information disclosure, when weak encryption… |
| CVE-2024-20068 | Media (5.9) | 0.56% | — | 3 jun 2024 | In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is no needed for exploitation.… |