CVE-2025-20673

In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00413200; Issue ID: MSV-3304.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
MediaTekCNA
---
---
CISA-ADPADP
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 2%
VendorProductVersion
mediatekmt7902_firmware
𝑥
≤ 3.6
mediatekmt7921_firmware
𝑥
≤ 3.6
mediatekmt7922_firmware
𝑥
≤ 3.6
mediatekmt7925_firmware
𝑥
≤ 3.6
mediatekmt7927_firmware
𝑥
≤ 3.6
𝑥
= Vulnerable software versions