Mediatek
Mediatek Mt2735 Firmware: vulnerabilidades y CVE
Mediatek Mt2735 Firmware tiene 12 vulnerabilidades publicadas, 11 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses11
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-20504 | Media (5.3) | 0.19% | — | 7 sept 2026 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20503 | Media (5.3) | 0.19% | — | 7 sept 2026 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20492 | Media (5.5) | 0.11% | — | 3 ago 2026 | In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2026-20491 | Media (5.5) | 0.15% | — | 3 ago 2026 | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch… |
| CVE-2026-20480 | Media (5.5) | 0.14% | — | 3 ago 2026 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2026-20479 | Alta (7.5) | 0.71% | — | 3 ago 2026 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20478 | Media (5.5) | 0.14% | — | 3 ago 2026 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.… |
| CVE-2026-20450 | Media (6.5) | 0.29% | — | 4 may 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20449 | Media (6.5) | 0.22% | — | 4 may 2026 | In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
| CVE-2026-20433 | Alta (8.8) | 0.34% | — | 7 abr 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2026-20432 | Alta (8) | 0.29% | — | 7 abr 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no… |
| CVE-2025-20659 | Media (6.5) | 0.36% | — | 7 abr 2025 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.