In wlan AP driver, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00418785; Issue ID: MSV-3515.
                
            References
                    | Link | Resource | 
|---|---|
| https://corp.mediatek.com/product-security-bulletin/October-2025 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
History
                    16 Oct 2025, 15:22
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://corp.mediatek.com/product-security-bulletin/October-2025 - Vendor Advisory | |
| First Time | Openwrt Mediatek mt7986 Mediatek software Development Kit Mediatek mt7915 Mediatek mt7916 Mediatek mt6890 Mediatek mt7981 Mediatek Openwrt openwrt | |
| CPE | cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7915:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7986:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:19.07.0:-:*:*:*:*:*:* cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7981:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7916:-:*:*:*:*:*:*:* | 
14 Oct 2025, 14:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 8.8 | 
14 Oct 2025, 10:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-10-14 10:15
Updated : 2025-10-16 15:22
NVD link : CVE-2025-20710
Mitre link : CVE-2025-20710
CVE.ORG link : CVE-2025-20710
JSON object : View
Products Affected
                openwrt
- openwrt
mediatek
- software_development_kit
- mt7915
- mt7916
- mt7981
- mt6890
- mt7986
CWE
                
                    
                        
                        CWE-190
                        
            Integer Overflow or Wraparound
