Vulnerability

CVE-2025-20640

In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

N/A

Severity (Android)

N/A

Chipsets

21

Devices

558

Affected Hardware

NameAlso known asManufacturer
MT6739
MediaTek
MT6765
Helio P35
MediaTek
MT6771
Helio P60
MediaTek
MT6768
Helio P65
MediaTek
MT6781
Helio G96
MediaTek
MT6833
Dimensity 6020
Dimensity 700
MediaTek
MT6873
Dimensity 800
MediaTek
MT6833
Dimensity 6080
Dimensity 810
MediaTek
MT6877
Dimensity 900
MediaTek
MT6877
Dimensity 920
MediaTek
21 of 21 row(s) shown.

Rows per page

Page 1 of 3

Timeline

Introduced (est):
Oct 1, 2017
Reported:
Unknown
Advisory Published:
Feb 3, 2025
CVE Published:
N/A
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter